CVE-2017-18327: Medium severity android vulnerability
Security keys are logged when any WCDMA call is configured or reconfigured in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SDA660, SDX20, SXR1130.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-18327?
CVE-2017-18327 is a vulnerability where security keys are logged when any WCDMA call is configured or reconfigured.
Which Qualcomm products are affected by CVE-2017-18327?
Qualcomm products MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 712 are affected by CVE-2017-18327.
What is the severity of CVE-2017-18327?
The severity of CVE-2017-18327 is high with a severity value of 5.5.
How can I fix CVE-2017-18327?
To mitigate CVE-2017-18327, users should update to the latest firmware or software patches provided by Qualcomm or their device manufacturer.
Where can I find more information about CVE-2017-18327?
More information about CVE-2017-18327 can be found in the Android Security Bulletin for December 2018 and the Security Focus website.