CVE-2017-18320: Input Validation
QSEE unload attempt on a 3rd party TEE without previously loading results in a data abort in snapdragon automobile and snapdragon mobile in versions MSM8996AU, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 810, SD 820, SD 820A, SD 835, SDA660, SDM439, SDM630, SDM660, SDX24, SnapdragonHighMed2016, SXR1130.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-18320?
CVE-2017-18320 has a medium severity due to the potential for data aborts in affected Qualcomm Snapdragon devices.
How do I fix CVE-2017-18320?
To fix CVE-2017-18320, update the affected Qualcomm firmware to a version that addresses this vulnerability.
What devices are impacted by CVE-2017-18320?
CVE-2017-18320 affects various Qualcomm Snapdragon devices including MSM8996AU, SD 410, SD 425, SD 427, among others.
Is there a patch available for CVE-2017-18320?
Yes, Qualcomm has released firmware updates that provide a patch for CVE-2017-18320.
What are the potential consequences of CVE-2017-18320?
The consequences of CVE-2017-18320 may include system instability and unexpected behavior in affected devices.