CVE-2017-18294: Input Validation
While reading file class type from ELF header, a buffer overread may happen if the ELF file size is less than the size of ELF64 header size in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version FSM9055, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDA660, SDX20.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-18294?
CVE-2017-18294 has been classified as a moderate severity vulnerability.
How do I fix CVE-2017-18294?
To address CVE-2017-18294, ensure that your device is updated to the latest firmware or security patch provided by the vendor.
Which devices are affected by CVE-2017-18294?
CVE-2017-18294 affects devices running certain Qualcomm chipsets, including Snapdragon Automotive and Mobile platforms.
What is the nature of the vulnerability in CVE-2017-18294?
CVE-2017-18294 is a buffer overread vulnerability occurring during the handling of ELF headers.
Is there a workaround for CVE-2017-18294?
Currently, the best approach for CVE-2017-18294 is to apply the latest software updates and patches from your device manufacturer.