{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-10-01T15:11:17.941","vulnerabilities":[{"cve":{"id":"CVE-2015-9223","sourceIdentifier":"product-security@qualcomm.com","published":"2018-04-18T14:29:09.357","lastModified":"2026-06-17T00:36:05.173","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, SD 400, SD 600, and SD 800, a buffer overflow can occur when processing an audio buffer."},{"lang":"es","value":"En Android antes del nivel de parcheo de seguridad del 2018-04-05 o antes en Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, SD 400, SD 600 y SD 800, podría ocurrir un desbordamiento de búfer mientras se procesa un búfer de audio."}],"affected":[{"source":"product-security@qualcomm.com","affectedData":[{"vendor":"Qualcomm, Inc.","product":"Snapdragon Mobile","versions":[{"version":"MDM9615, MDM9625, MDM9635M, SD 400, SD 600, SD 800","status":"affected"}]}]}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10.0,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10.0,"impactScore":10.0,"acInsufInfo":true,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-119"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:mdm9615_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"71E28EA6-0683-4755-8ABB-7F37DA810E4F"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:mdm9615:-:*:*:*:*:*:*:*","matchCriteriaId":"D4DF4D4E-CDAA-42BB-802E-2722E7F3DBC2"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:mdm9625_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"93AE9CA0-59C4-4C7E-8D5E-E0226117C45A"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:mdm9625:-:*:*:*:*:*:*:*","matchCriteriaId":"467A5C4D-9909-44B5-9D1B-B746902FF094"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:mdm9635m_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"9EF77DD1-BE11-4132-9889-646196FAE567"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:mdm9635m:-:*:*:*:*:*:*:*","matchCriteriaId":"CB323C15-2018-4CB8-858E-56F088B03FBB"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd_400_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"AC3C20F8-9EFD-457C-B0B2-DA3C44A8B26D"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd_400:-:*:*:*:*:*:*:*","matchCriteriaId":"4B562043-7A0C-4692-A94F-EF4086BAA654"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd_600_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"607AA2E2-69A9-4A8A-B9E3-137D37CB7632"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd_600:-:*:*:*:*:*:*:*","matchCriteriaId":"4FF1492A-884D-4E59-8A1C-E39A105E2CAA"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd_800_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"67E0DD11-0B28-4B6D-BDB7-0DBFA34A7187"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd_800:-:*:*:*:*:*:*:*","matchCriteriaId":"551512D0-ED24-4B5A-BEB2-B090BB8DEE0C"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/103671","source":"product-security@qualcomm.com","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://source.android.com/security/bulletin/2018-04-01","source":"product-security@qualcomm.com","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/103671","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://source.android.com/security/bulletin/2018-04-01","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}