CVE-2014-10055Sensitive Information Exposure in INC Snapdragon Mobile

Severity
7.5HIGHNVD
EPSS
0.2%
top 55.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 18
Latest updateMay 14

Description

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, there could be leakage of protected contents if HLOS doesn't request for security restoration for OCMEM xPU's.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

CVEListV5qualcomm_inc/snapdragon_mobileSD 400, SD 800

🔴Vulnerability Details

1
GHSA
GHSA-gjcm-jj24-9jc7: In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, there could be leakage of protected cont2022-05-14

📋Vendor Advisories

1
Android
CVE-2014-10055: Closed-source component2018-04-01