First published: Mon Dec 03 2018(Updated: )
Security keys used by the terminal and NW for a session could be leaked in snapdragon mobile in versions MDM9650, MDM9655, SD 835, SDA660.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
Qualcomm MDM9650 | ||
Qualcomm MDM9650 firmware | ||
Qualcomm MDM9655 firmware | ||
Qualcomm MDM9655 firmware | ||
Qualcomm SD835 Firmware | ||
Qualcomm Snapdragon 835 | ||
Qualcomm SDA660 | ||
Qualcomm SDA660 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-18321 has a moderate severity rating due to potential information leakage of security keys.
To mitigate CVE-2017-18321, update the affected Qualcomm firmware to the latest version that addresses this vulnerability.
CVE-2017-18321 affects devices running Qualcomm Mdm9650, Mdm9655, SD 835, and SDA660 firmware.
CVE-2017-18321 is categorized as an information disclosure vulnerability.
Yes, if exploited, CVE-2017-18321 could potentially allow attackers to leverage leaked security keys for further attacks.