ZeroHour

CVE-2017-18171

CVSS 3.0
8.8 high
EPSS
<1%p42
Published
()
Modified
Description

Improper input validation for GATT data packet received in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDM630, SDM636, SDM660, SDM710, Snapdragon_High_Med_2016.

Vendors
qualcomm
Products
qca9379 firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 410 firmware, sd 412 firmware, sd 425 firmware, sd 427 firmware, sd 430 firmware, sd 435 firmware, sd 450 firmware, sd 615 firmware
Weakness
CWE-119
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.