4.7

CVE-2017-18302

In Snapdragon (Automobile ,Mobile) in version MSM8996AU, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SDA660, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, Snapdragon_High_Med_2016, a crafted HLOS client can modify the structure in memory passed to a QSEE application between the time of check and the time of use, resulting in arbitrary writes to TZ kernel memory regions.

Data is provided by the National Vulnerability Database (NVD)
QualcommMsm8996au Firmware Version-
   QualcommMsm8996au Version-
QualcommSd425 Firmware Version-
   QualcommSd425 Version-
QualcommSd427 Firmware Version-
   QualcommSd427 Version-
QualcommSd430 Firmware Version-
   QualcommSd430 Version-
QualcommSd435 Firmware Version-
   QualcommSd435 Version-
QualcommSd450 Firmware Version-
   QualcommSd450 Version-
QualcommSd625 Firmware Version-
   QualcommSd625 Version-
QualcommSd650 Firmware Version-
   QualcommSd650 Version-
QualcommSd652 Firmware Version-
   QualcommSd652 Version-
QualcommSd820 Firmware Version-
   QualcommSd820 Version-
QualcommSd820a Firmware Version-
   QualcommSd820a Version-
QualcommSd835 Firmware Version-
   QualcommSd835 Version-
QualcommSda660 Firmware Version-
   QualcommSda660 Version-
QualcommSdm429 Firmware Version-
   QualcommSdm429 Version-
QualcommSdm439 Firmware Version-
   QualcommSdm439 Version-
QualcommSdm630 Firmware Version-
   QualcommSdm630 Version-
QualcommSdm632 Firmware Version-
   QualcommSdm632 Version-
QualcommSdm636 Firmware Version-
   QualcommSdm636 Version-
QualcommSdm660 Firmware Version-
   QualcommSdm660 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.05% 0.136
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.7 1 3.6
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N
nvd@nist.gov 4.7 3.4 6.9
AV:L/AC:M/Au:N/C:N/I:C/A:N
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.