CVE-2018-11820
- EPSS 0.05%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:05
Use of non-time constant memcmp function creates side channel that leaks information and leads to cryptographic issues in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer ...
CVE-2018-11845
- EPSS 0.05%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:07
Usage of non-time-constant comparison functions can lead to information leakage through side channel analysis in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snap...
CVE-2018-11864
- EPSS 0.05%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:09
Bytes can be written to fuses from Secure region which can be read later by HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdr...
CVE-2018-11931
- EPSS 0.04%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:16
Improper access to HLOS is possible while transferring memory to CPZ in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,...
CVE-2018-11948
- EPSS 0.06%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:18
Exceeding the limit of usage entries are not tracked and the information will be lost causing the content to lose continuity in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Con...
CVE-2018-11847
- EPSS 0.03%
- Published 11.02.2019 15:29:00
- Last modified 21.11.2024 03:44:07
Malicious TA can tag QSEE kernel memory and map to EL0, there by corrupting the physical memory as well it can be used to corrupt the QSEE kernel and compromise the whole TEE in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon...
CVE-2018-11855
- EPSS 0.04%
- Published 11.02.2019 15:29:00
- Last modified 21.11.2024 03:44:08
If an end user makes use of SCP11 sample OCE code without modification it could lead to a buffer overflow when transmitting a CAPDU in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdra...
CVE-2018-11888
- EPSS 0.03%
- Published 11.02.2019 15:29:00
- Last modified 21.11.2024 03:44:12
Unauthorized access may be allowed by the SCP11 Crypto Services TA will processing commands from other TA in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdrag...
CVE-2017-8276
- EPSS 0.04%
- Published 18.01.2019 22:29:00
- Last modified 21.11.2024 03:33:40
Improper authorization involving a fuse in TrustZone in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD...
CVE-2018-11279
- EPSS 0.11%
- Published 18.01.2019 22:29:00
- Last modified 21.11.2024 03:43:02
Lack of check of input size can make device memory get corrupted because of buffer overflow in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, ...