CVE-2017-18312
- EPSS 0.03%
- Published 23.10.2018 13:29:02
- Last modified 21.11.2024 03:19:49
While accessing SafeSwitch services, third party can manipulate a given device and perform unauthorized operation due to lack of checking of same state transitions in Snapdragon Automobile, Snapdragon Mobile in version MSM8996AU, SD 410/12, SD 617, S...
CVE-2017-18292
- EPSS 0.06%
- Published 23.10.2018 13:29:01
- Last modified 21.11.2024 03:19:47
Secure app running in non secure space can restart TZ by calling Widevine app API repeatedly in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD ...
CVE-2017-18298
- EPSS 0.05%
- Published 23.10.2018 13:29:01
- Last modified 21.11.2024 03:19:48
Lack of Input Validation in SDMX API can lead to NULL pointer access in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/...
CVE-2017-18172
- EPSS 0.03%
- Published 23.10.2018 13:29:00
- Last modified 21.11.2024 03:19:28
In a device, with screen size 1440x2560, the check of contiguous buffer will overflow on certain buffer size resulting in an Integer Overflow or Wraparound in System UI in Snapdragon Automobile, Snapdragon Mobile in version MDM9635M, SD 400, SD 410/1...
CVE-2017-18277
- EPSS 0.04%
- Published 23.10.2018 13:29:00
- Last modified 21.11.2024 03:19:45
When dynamic memory allocation fails, currently the process sleeps for one second and continues with infinite loop without retrying for memory allocation in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM964...
CVE-2018-5892
- EPSS 0.3%
- Published 06.07.2018 17:29:02
- Last modified 21.11.2024 04:09:39
The Touch Pal application can collect user behavior data without awareness by the user in Snapdragon Mobile and Snapdragon Wear.
CVE-2018-5838
- EPSS 0.03%
- Published 06.07.2018 17:29:01
- Last modified 21.11.2024 04:09:30
Improper Validation of Array Index In the adreno OpenGL driver in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, an out-of-bounds access can occur in SurfaceFlinger.
CVE-2018-11259
- EPSS 0.04%
- Published 06.07.2018 17:29:00
- Last modified 21.11.2024 03:43:00
Due to Improper Access Control of NAND-based EFS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, From fastboot on a NAND-based device, the EFS partition can be erased. Apps processor then has non-secure world full read/write access t...
- EPSS 0.18%
- Published 18.04.2018 14:29:14
- Last modified 21.11.2024 02:44:08
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9635M, SD 210/SD 212/SD 205, SD 410/12, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 808, and SD 810, A NULL pointer dereference can occur during an SSL ...
CVE-2016-10497
- EPSS 0.24%
- Published 18.04.2018 14:29:14
- Last modified 21.11.2024 02:44:08
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425...