Improper input validation in SCM handler to access storage in TZ can lead to unauthorized access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in versions MDM9206, MDM9607, MDM9650, MDM9655, QCS605, SD 410/12, SD 675, SD 712 / SD 710 / SD 670, SD 8CX, SXR1130.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/106845 | Third Party Advisory VDB Entry |
https://www.qualcomm.com/company/product-security/bulletins | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: qualcomm
Published: 2019-02-25T23:00:00
Updated: 2019-02-26T10:57:01
Reserved: 2018-07-11T00:00:00
Link: CVE-2018-13904
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-02-25T22:29:02.743
Modified: 2019-02-26T18:14:32.593
Link: CVE-2018-13904
JSON object: View
Redhat Information
No data.
CWE