CVE-2017-18283 — Improper Restriction of Operations within the Bounds of a Memory Buffer in INC Snapdragon Mobile
Severity
6.5MEDIUMNVD
EPSS
0.4%
top 41.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 23
Latest updateMay 13
Description
Possible memory corruption when Read Val Blob Req is received with invalid parameters in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 625, SD 835, SD 845, SD 850, SDA660.
CVSS vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6
Affected Packages2 packages
▶CVEListV5qualcomm_inc/snapdragon_mobileQCA9379, SD 210/SD 212/SD 205, SD 625, SD 835, SD 845, SD 850, SDA660