In pl330_dma_from_peri_start() of fp_spi_dma.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 24 Jul 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
Thu, 15 Aug 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Google_Devices
Published:
Updated: 2024-08-15T15:34:42.289Z
Reserved: 2024-04-19T15:12:10.955Z
Link: CVE-2024-32917
Updated: 2024-08-02T02:20:35.705Z
Status : Analyzed
Published: 2024-06-13T21:15:55.603
Modified: 2025-07-24T16:06:57.700
Link: CVE-2024-32917
No data.
OpenCVE Enrichment
Updated: 2025-07-21T15:16:56Z
Weaknesses