CVE-2018-11932
- EPSS 0.22%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:16
Improper input validation can lead RW access to secure subsystem from HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon M...
CVE-2018-11935
- EPSS 0.18%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:16
Improper input validation might result in incorrect app id returned to the caller Instead of returning failure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Sna...
CVE-2018-11945
- EPSS 0.35%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:44:18
Improper input validation in wireless service messaging module for data received from broadcast messages can lead to heap overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdrag...
CVE-2018-13904
- EPSS 0.39%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 03:48:18
Improper input validation in SCM handler to access storage in TZ can lead to unauthorized access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobi...
CVE-2018-5839
- EPSS 0.04%
- Published 25.02.2019 22:29:02
- Last modified 21.11.2024 04:09:31
Improperly configured memory protection allows read/write access to modem image from HLOS kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in versions MDM9150, MDM9615, MDM9625, MDM9...
CVE-2018-11847
- EPSS 0.03%
- Published 11.02.2019 15:29:00
- Last modified 21.11.2024 03:44:07
Malicious TA can tag QSEE kernel memory and map to EL0, there by corrupting the physical memory as well it can be used to corrupt the QSEE kernel and compromise the whole TEE in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon...
CVE-2018-11855
- EPSS 0.04%
- Published 11.02.2019 15:29:00
- Last modified 21.11.2024 03:44:08
If an end user makes use of SCP11 sample OCE code without modification it could lead to a buffer overflow when transmitting a CAPDU in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdra...
CVE-2018-11888
- EPSS 0.03%
- Published 11.02.2019 15:29:00
- Last modified 21.11.2024 03:44:12
Unauthorized access may be allowed by the SCP11 Crypto Services TA will processing commands from other TA in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdrag...
- EPSS 0.22%
- Published 18.01.2019 22:29:00
- Last modified 21.11.2024 03:19:28
AGPS session failure in GNSS module due to cyphersuites are hardcoded and needed manual update everytime in snapdragon mobile and snapdragon wear in versions MDM9635M, MDM9645, MDM9650, MDM9655, MSM8909W, SD 835, SD 845, SD 850
CVE-2017-18332
- EPSS 0.05%
- Published 18.01.2019 22:29:00
- Last modified 21.11.2024 03:19:52
Security keys are logged when any WCDMA call is configured or reconfigured in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, S...