ZeroHour

CVE-2017-18274

CVSS 3.0
7.8 high
EPSS
<1%p15
Published
()
Modified
Description

While iterating through the models contained in a fixed-size array in the actData structure, which also stores an incorrect number of models that is greater than the size of the array, a buffer overflow occurs in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835

Vendors
qualcomm
Products
mdm9206 firmware, mdm9607 firmware, mdm9650 firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 425 firmware, sd 430 firmware, sd 450 firmware, sd 617 firmware, sd 625 firmware, sd 650 firmware
Weakness
CWE-129
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.