CVE-2017-18275: Medium severity Google Android vulnerability
A new account can be inserted into simContacts service using Android command line tool in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in MDM9206, MDM9607, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-18275?
CVE-2017-18275 is classified as a high-severity vulnerability.
How do I fix CVE-2017-18275?
To fix CVE-2017-18275, update the affected Qualcomm firmware to a safe version that addresses this vulnerability.
What systems are affected by CVE-2017-18275?
CVE-2017-18275 affects Snapdragon platforms including Snapdragon Automobile, Snapdragon Mobile, and various models like MDM9206, MDM9607, and several others.
Can CVE-2017-18275 lead to unauthorized access?
Yes, CVE-2017-18275 can allow unauthorized insertion of accounts into the simContacts service, potentially compromising user data.
Was there a patch released for CVE-2017-18275?
Yes, Qualcomm released firmware updates that patch CVE-2017-18275 and mitigate its security risks.