First published: Mon Apr 02 2018(Updated: )
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile SD 845, SD 850, on a secure device, PD dumps are collected when debugging is not enabled.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
Qualcomm SDA845 Firmware | ||
Qualcomm SD845 | ||
Qualcomm SD850 Firmware | ||
Qualcomm SD850 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18143 is classified as a high-severity vulnerability that affects certain Android devices.
To mitigate CVE-2017-18143, ensure your device is updated to the security patch level from April 5, 2018, or later.
CVE-2017-18143 affects devices using Qualcomm Snapdragon Mobile SD 845 and SD 850 that are running Android before the April 2018 security patch.
CVE-2017-18143 is a security vulnerability that involves the collection of potentially sensitive data when debugging is not enabled.
CVE-2017-18143 requires physical access to the device, so it is not considered a remote exploit.