PT-2017-2121 · Qualcomm · Qualcomm Secure Execution Environment
Publicado
2017-05-16
·
Atualizado
2017-07-11
·
CVE-2015-9002
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Qualcomm Secure Execution Environment versions (affected versions not specified)
Description
The issue is related to errors in number processing within the TrustZone technology, specifically in the DRM subroutine of the Qualcomm Secure Execution Environment microprogram for Android from the CAF repository. This could potentially allow a remote attacker to elevate their privileges. An out-of-range pointer offset vulnerability can occur in a DRM routine.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Qualcomm Secure Execution Environment