PT-2017-2121 · Qualcomm · Qualcomm Secure Execution Environment
Published
2017-05-16
·
Updated
2017-07-11
·
CVE-2015-9002
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Qualcomm Secure Execution Environment versions (affected versions not specified)
Description
The issue is related to errors in number processing within the TrustZone technology, specifically in the DRM subroutine of the Qualcomm Secure Execution Environment microprogram for Android from the CAF repository. This could potentially allow a remote attacker to elevate their privileges. An out-of-range pointer offset vulnerability can occur in a DRM routine.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Qualcomm Secure Execution Environment