Vulnerabilities > Qualcomm > High

DATE CVE VULNERABILITY TITLE RISK
2018-10-26 CVE-2017-18309 Improper Validation of Array Index vulnerability in Qualcomm SD 845 Firmware and SD 850 Firmware
A micro-core of QMP transportation may cause a macro-core to read from or write to arbitrary memory in Snapdragon Mobile in version SD 845, SD 850.
local
low complexity
qualcomm CWE-129
7.1
2018-10-26 CVE-2017-18308 Unspecified vulnerability in Qualcomm products
Modem segments are unlocked after authentication, leaving modem segments open to all in Snapdragon Mobile, Snapdragon Wear in version MDM9607, MSM8909W, SD 210/SD 212/SD 205, SD 425, SD 430
local
low complexity
qualcomm
7.8
2018-10-26 CVE-2017-18124 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
During secure boot, addition is performed on uint8 ptrs which led to overflow issue in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version FSM9055, IPQ4019, MDM9206, MDM9607, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDX20
local
low complexity
qualcomm CWE-119
7.8
2018-10-23 CVE-2017-18312 Missing Authorization vulnerability in Qualcomm products
While accessing SafeSwitch services, third party can manipulate a given device and perform unauthorized operation due to lack of checking of same state transitions in Snapdragon Automobile, Snapdragon Mobile in version MSM8996AU, SD 410/12, SD 617, SD 650/52, SD 810, SD 820, SD 820A
local
low complexity
qualcomm CWE-862
7.8
2018-10-23 CVE-2017-18305 Unspecified vulnerability in Qualcomm products
XBL sec mem dump system call allows complete control of EL3 by unlocking all XPUs if enable fuse is not blown in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 835.
local
high complexity
qualcomm
7.0
2018-10-23 CVE-2017-18304 Out-of-bounds Read vulnerability in multiple products
Insufficient memory allocation in boot due to incorrect size being passed could result in out of bounds access in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in version FSM9055, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SDA660 and SDX20
local
low complexity
qaulcomm qualcomm CWE-125
7.8
2018-10-23 CVE-2017-18303 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
While processing the sensors registry configuration file, if inputs are not validated a buffer overflow will occur in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MMDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 600, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 820A, SD 835, SDA660, SDX20.
local
low complexity
qualcomm CWE-119
7.8
2018-10-23 CVE-2017-18298 NULL Pointer Dereference vulnerability in Qualcomm products
Lack of Input Validation in SDMX API can lead to NULL pointer access in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660 .
local
low complexity
qualcomm CWE-476
7.8
2018-10-23 CVE-2017-18297 Double Free vulnerability in Qualcomm products
Double memory free while closing TEE SE API Session management in Snapdragon Mobile in version SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820.
local
low complexity
qualcomm CWE-415
7.8
2018-10-23 CVE-2017-18296 Unspecified vulnerability in Qualcomm products
Access control on applications is not applied while accessing SafeSwitch services can lead to improper access in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDA660, SDX20.
local
low complexity
qualcomm
7.8