Vulnerability
CVE-2017-18278
Component: TRUST
Location: OS
An integer underflow may occur due to lack of check when received data length from font_mgr_qsee_request_service is bigger than the minimal value of the segment header, which may result in a buffer overflow, in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850.
Impact
Severity (Manufact.)
N/A
Severity (NIST)
7.8
Severity (Android)
N/A
Chipsets
12
Devices
708
Affected Hardware
Name | Also known as | Manufacturer |
---|---|---|
MSM8909 | Snapdragon 210 | Qualcomm |
MSM8909AA | Snapdragon 212 | Qualcomm |
MSM8917 | Snapdragon 425 | Qualcomm |
MSM8937 | Snapdragon 430 | Qualcomm |
SDM450 | Snapdragon 450 | Qualcomm |
MSM8953 | Snapdragon 625 | Qualcomm |
MSM8956 | Snapdragon 650 | Qualcomm |
MSM8996Lite | Snapdragon 820 | Qualcomm |
MSM8996 | Snapdragon 820 | Qualcomm |
MSM8998 | Snapdragon 835 Snapdragon 835 Mobile PC Platform | Qualcomm |
12 of 12 row(s) shown.
Rows per page
Page 1 of 2
Information reliability
The information on this website is intended to provide information on the big picture of chipset security and measure trends within the industry. Our information is obtained from several vantage points, checked for consistency, and automatically cross-referenced. However, this process may not always yield reliable information. Do not use the information on a particular vulnerability, chipset or device to verify your individual exposure in cases where inaccuracies are inacceptable, for instance to assess risks if you are a Politically Exposed Person.
Timeline
Introduced (est):
Jan 1, 2014
Reported:
Unknown
Advisory Published:
Mar 25, 2019
CVE Published:
May 6, 2019
Android Patch Level:
Jul 2018