ZeroHour

CVE-2017-18312

CVSS 3.0
7.8 high
EPSS
<1%p8
Published
()
Modified
Description

While accessing SafeSwitch services, third party can manipulate a given device and perform unauthorized operation due to lack of checking of same state transitions in Snapdragon Automobile, Snapdragon Mobile in version MSM8996AU, SD 410/12, SD 617, SD 650/52, SD 810, SD 820, SD 820A

Vendors
qualcomm
Products
msm8996au firmware, sd 410 firmware, sd 412 firmware, sd 617 firmware, sd 650 firmware, sd 652 firmware, sd 810 firmware, sd 820 firmware, sd 820a firmware
Weakness
CWE-862
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.