CVE-2017-9694: Qcacld 2.0 Project Qcacld 2.0
High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.
While parsing Netlink attributes in QCA_WLAN_VENDOR_ATTR_EXTSCAN_BSSID_HOTLIST_PARAMS_LOST_AP_SAMPLE_SIZE in qcacld 2.0 before 2017-05-16, a buffer overread could occur.
Affected products
- Qcacld 2.0 Project Qcacld 2.0: before 4.5.40.004 (fixed in 4.5.40.004)
Published 2018-03-30. Last modified 2026-06-17.