XBL sec mem dump system call allows complete control of EL3 by unlocking all XPUs if enable fuse is not blown in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 835.
References
Link | Resource |
---|---|
http://www.securitytracker.com/id/1041432 | Third Party Advisory VDB Entry |
https://source.android.com/security/bulletin/2018-08-01#qualcomm-closed-source-components | Third Party Advisory |
https://www.qualcomm.com/company/product-security/bulletins | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: qualcomm
Published: 2018-10-23T13:00:00
Updated: 2018-10-24T09:57:01
Reserved: 2018-06-15T00:00:00
Link: CVE-2017-18305
JSON object: View
NVD Information
Status : Analyzed
Published: 2018-10-23T13:29:02.557
Modified: 2019-10-03T00:03:26.223
Link: CVE-2017-18305
JSON object: View
Redhat Information
No data.
CWE