CVE-2017-18293: High severity Google Android vulnerability
When a particular GPIO is protected by blocking access to the corresponding GPIO resource registers, the protection can be bypassed using the corresponding banked GPIO registers instead in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SDA660.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-18293?
The severity of CVE-2017-18293 is classified as high due to potential unauthorized access to GPIO resources.
How do I fix CVE-2017-18293?
To fix CVE-2017-18293, you should apply the latest firmware updates provided by Qualcomm for the affected Snapdragon devices.
What devices are affected by CVE-2017-18293?
CVE-2017-18293 affects several Qualcomm Snapdragon models, including MDM9206, MDM9607, MDM9650, SD 210, SD 212, SD 205, SD 425, and SD 430.
Can CVE-2017-18293 be exploited remotely?
CVE-2017-18293 can potentially be exploited locally, allowing an attacker to gain unauthorized access if they have physical access to the device.
Is there a workaround for CVE-2017-18293?
There are no known effective workarounds for CVE-2017-18293, so firmware updates are recommended to mitigate this vulnerability.