In gnss driver, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09920036; Issue ID: MSV-3798.
| Software | From | Fixed in |
|---|---|---|
| rdkcentral / rdk-b | 2024q1 | 2024q1.x |
| google / android | 14.0 | 14.0.x |
| google / android | 15.0 | 15.0.x |
| openwrt / openwrt | 21.02.0 | 21.02.0.x |
| openwrt / openwrt | 23.05 | 23.05.x |