In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile and Snapdragon Mobile MDM9625, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, and SD 820A, no address argument validation performed on calls to a QSEE syscall may lead to arbitrary read/write or NULL Pointer exception when calling a downstream function.
2018-04-18T14:29:02.527
2024-11-21T02:39:49.107
Modified
CVSSv3.0: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | qualcomm | mdm9625_firmware | - | Yes |
Hardware | qualcomm | mdm9625 | - | No |
Operating System | qualcomm | sd_425_firmware | - | Yes |
Hardware | qualcomm | sd_425 | - | No |
Operating System | qualcomm | sd_430_firmware | - | Yes |
Hardware | qualcomm | sd_430 | - | No |
Operating System | qualcomm | sd_450_firmware | - | Yes |
Hardware | qualcomm | sd_450 | - | No |
Operating System | qualcomm | sd_625_firmware | - | Yes |
Hardware | qualcomm | sd_625 | - | No |
Operating System | qualcomm | sd_650_firmware | - | Yes |
Hardware | qualcomm | sd_650 | - | No |
Operating System | qualcomm | sd_652_firmware | - | Yes |
Hardware | qualcomm | sd_652 | - | No |
Operating System | qualcomm | sd_820a_firmware | - | Yes |
Hardware | qualcomm | sd_820a | - | No |
Operating System | qualcomm | sd_820_firmware | - | Yes |
Hardware | qualcomm | sd_820 | - | No |