CVE-2018-5913
- EPSS 0.09%
- Veröffentlicht 14.06.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:09:41
A non-time constant function memcmp is used which creates a side channel that could leak information in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon In...
CVE-2017-8252
- EPSS 0.04%
- Veröffentlicht 14.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:33:37
Kernel can inject faults in computations during the execution of TrustZone leading to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapd...
CVE-2018-13898
- EPSS 0.29%
- Veröffentlicht 14.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:48:17
Out-of-Bounds write due to incorrect array index check in PMIC in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MD...
CVE-2018-13906
- EPSS 0.23%
- Veröffentlicht 14.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:48:18
The HMAC authenticating the message from QSEE is vulnerable to timing side channel analysis leading to potentially forged application message in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivit...
CVE-2018-13907
- EPSS 0.22%
- Veröffentlicht 14.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:48:18
While deserializing any key blob during key operations, buffer overflow could occur, exposing partial key information if any key operations are invoked in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics C...
CVE-2018-13908
- EPSS 0.05%
- Veröffentlicht 14.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:48:18
Truncated access authentication token leads to weakened access control for stored secure application data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdrag...
- EPSS 0.03%
- Veröffentlicht 14.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:48:18
Metadata verification and partial hash system calls by bootloader may corrupt parallel hashing state in progress resulting in unexpected behavior in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consume...
CVE-2018-13910
- EPSS 0.03%
- Veröffentlicht 14.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:48:19
Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdrag...
CVE-2018-11976
- EPSS 0.05%
- Veröffentlicht 24.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 03:44:21
ECDSA signature code leaks private keys from secure world to non-secure world in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrago...
CVE-2018-12004
- EPSS 0.05%
- Veröffentlicht 24.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 03:44:23
Secure keypad is unlocked with secure display still intact in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdrag...