Vulnerability

CVE-2017-18072

Component: WIFI
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9640, MDM9650, QCA4531, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9378, QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 835, SD 845, SDM630, SDM636, SDM660, Snapdragon_High_Med_2016, the probe requests originated from user's phone contains the information elements which specifies the supported wifi features. This shall impact the user's privacy if someone sniffs the probe requests originated by this DUT. Hence, control the presence of which information elements is supported.

Impact

Severity (Manufact.)

N/A

Severity (NIST)

7.5

Severity (Android)

N/A

Chipsets

3

Devices

142

Affected Hardware

NameAlso known asManufacturer
SDM630
Snapdragon 630
Qualcomm
SDM636
Snapdragon 636
Qualcomm
SDM660
Snapdragon 660
Qualcomm
3 of 3 row(s) shown.

Rows per page

Page 1 of 1

Timeline

Introduced (est):
Apr 1, 2017
Reported:
Unknown
Advisory Published:
N/A
CVE Published:
Apr 11, 2018
Android Patch Level:
None
For more information and a detailed analysis of the data presented on this website, please see our paper, to be presented at NDSS'25.
Follow us on Twitter