5.5

CVE-2017-18301

In Small Cell SoC and Snapdragon (Automobile, Mobile, Wear) in version FSM9055, FSM9955, MDM9607, MDM9640, MDM9650, MSM8909W, SD 425, SD 427, SD 430, SD 435, SD 450, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDM630, SDM636, SDM660, SDX20, Snapdragon_High_Med_2016, providing the NULL argument of ICE regulator while processing create key IOCTL results in system restart.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommFsm9055 Firmware Version-
   QualcommFsm9055 Version-
QualcommFsm9955 Firmware Version-
   QualcommFsm9955 Version-
QualcommMdm9607 Firmware Version-
   QualcommMdm9607 Version-
QualcommMdm9640 Firmware Version-
   QualcommMdm9640 Version-
QualcommMdm9650 Firmware Version-
   QualcommMdm9650 Version-
QualcommMsm8909w Firmware Version-
   QualcommMsm8909w Version-
QualcommSd425 Firmware Version-
   QualcommSd425 Version-
QualcommSd427 Firmware Version-
   QualcommSd427 Version-
QualcommSd430 Firmware Version-
   QualcommSd430 Version-
QualcommSd435 Firmware Version-
   QualcommSd435 Version-
QualcommSd450 Firmware Version-
   QualcommSd450 Version-
QualcommSd617 Firmware Version-
   QualcommSd617 Version-
QualcommSd625 Firmware Version-
   QualcommSd625 Version-
QualcommSd650 Firmware Version-
   QualcommSd650 Version-
QualcommSd652 Firmware Version-
   QualcommSd652 Version-
QualcommSd820 Firmware Version-
   QualcommSd820 Version-
QualcommSd820a Firmware Version-
   QualcommSd820a Version-
QualcommSd835 Firmware Version-
   QualcommSd835 Version-
QualcommSd845 Firmware Version-
   QualcommSd845 Version-
QualcommSdm630 Firmware Version-
   QualcommSdm630 Version-
QualcommSdm636 Firmware Version-
   QualcommSdm636 Version-
QualcommSdm660 Firmware Version-
   QualcommSdm660 Version-
QualcommSdx20 Firmware Version-
   QualcommSdx20 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.05% 0.147
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.9 3.9 6.9
AV:L/AC:L/Au:N/C:N/I:N/A:C
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.