PT-2019-8269 · Qualcomm · Mdm9206+10

Published

2019-05-06

·

Updated

2019-10-03

·

CVE-2017-18276

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon Mobile versions (affected versions not specified) Qualcomm Snapdragon Wear versions (affected versions not specified) Qualcomm MDM9206 versions (affected versions not specified) Qualcomm MDM9607 versions (affected versions not specified) Qualcomm MDM9650 versions (affected versions not specified) Qualcomm SD 210 versions (affected versions not specified) Qualcomm SD 212 versions (affected versions not specified) Qualcomm SD 205 versions (affected versions not specified) Qualcomm SD 835 versions (affected versions not specified) Qualcomm SD 845 versions (affected versions not specified) Qualcomm SD 850 versions (affected versions not specified)
Description The issue allows display/secure camera controllers to access HLOS memory during a secure display or camera session. This could potentially lead to unauthorized access to sensitive data.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2017-18276

Affected Products

Mdm9206
Mdm9607
Mdm9650
Sd 205
Sd 210
Sd 212
Sd 835
Sd 845
Sd 850
Snapdragon Mobile
Snapdragon Wear