CVE-2018-5913
- EPSS 0.09%
- Published 14.06.2019 17:29:01
- Last modified 21.11.2024 04:09:41
A non-time constant function memcmp is used which creates a side channel that could leak information in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon In...
CVE-2017-8252
- EPSS 0.04%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:33:37
Kernel can inject faults in computations during the execution of TrustZone leading to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapd...
CVE-2018-11939
- EPSS 0.04%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:44:17
Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, QCA6574AU, SD 210/SD 212/...
CVE-2018-11955
- EPSS 0.32%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:44:19
Lack of check on length of reason-code fetched from payload may lead driver access the memory not allocated to the frame and results in out of bound read in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapd...
CVE-2018-13901
- EPSS 0.03%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:48:17
Due to missing permissions in Android Manifest file, Sensitive information disclosure issue can happen in PCI RCS app in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, ...
CVE-2018-13902
- EPSS 0.26%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:48:17
Out of bounds memory read and access due to improper array index validation may lead to unexpected behavior while decoding XTRA file in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdrago...
CVE-2018-13906
- EPSS 0.23%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:48:18
The HMAC authenticating the message from QSEE is vulnerable to timing side channel analysis leading to potentially forged application message in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivit...
CVE-2018-13907
- EPSS 0.22%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:48:18
While deserializing any key blob during key operations, buffer overflow could occur, exposing partial key information if any key operations are invoked in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics C...
CVE-2018-13908
- EPSS 0.05%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:48:18
Truncated access authentication token leads to weakened access control for stored secure application data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdrag...
CVE-2018-13910
- EPSS 0.03%
- Published 14.06.2019 17:29:00
- Last modified 21.11.2024 03:48:19
Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdrag...