Improper input validation in TZ led to array out of bound in TZ function while accessing the peripheral details using the incoming data in Snapdragon Mobile, Snapdragon Wear version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SDA660.
Vector
LOCAL
Complexity
LOW
Authentication
NONE
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE
Qualcomm Mdm9206 firmware - (not an official CPE)
Qualcomm Mdm9607 firmware - (not an official CPE)
Qualcomm Mdm9650 firmware - (not an official CPE)
Qualcomm Sd 205 firmware - (not an official CPE)
Qualcomm Sd 210 firmware - (not an official CPE)
Qualcomm Sd 212 firmware - (not an official CPE)
Qualcomm Sd 425 firmware - (not an official CPE)
Qualcomm Sd 430 firmware - (not an official CPE)
Qualcomm Sd 450 firmware - (not an official CPE)
Qualcomm Sd 625 firmware - (not an official CPE)
Qualcomm Sd 650 firmware - (not an official CPE)
Qualcomm Sd 652 firmware - (not an official CPE)
Qualcomm Sd 835 firmware - (not an official CPE)
Qualcomm Sda660 firmware - (not an official CPE)
Qualcomm - Mdm9206 firmware
Qualcomm - Mdm9607 firmware
Qualcomm - Mdm9650 firmware
Qualcomm - Sd 205 firmware
Qualcomm - Sd 210 firmware
Qualcomm - Sd 212 firmware
Qualcomm - Sd 425 firmware
Qualcomm - Sd 430 firmware
Qualcomm - Sd 450 firmware
Qualcomm - Sd 625 firmware
Qualcomm - Sd 650 firmware
Qualcomm - Sd 652 firmware
Qualcomm - Sd 835 firmware
Qualcomm - Sda660 firmware
Advisory | Patch | Confirmed | Link |
---|---|---|---|
https://www.qualcomm.com/company/product-security/bullet... |