ZeroHour

CVE-2017-18305

CVSS 3.0
7.0 high
EPSS
<1%p14
Published
()
Modified
Description

XBL sec mem dump system call allows complete control of EL3 by unlocking all XPUs if enable fuse is not blown in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 835.

Vendors
qualcomm
Products
mdm9206 firmware, mdm9607 firmware, mdm9650 firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 835 firmware
Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.