
CVE-2018-5914
https://notcve.org/view.php?id=CVE-2018-5914
26 Oct 2018 — Improper input validation in TZ led to array out of bound in TZ function while accessing the peripheral details using the incoming data in Snapdragon Mobile, Snapdragon Wear version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SDA660. Validación de entradas incorrecta en TZ conduce a un array fuera de límites en la función TZ al acceder a los detalles del periférico mediante los datos entrantes en Snapdragon Mobile y Snapdragon Wear en versiones MDM9206... • https://www.qualcomm.com/company/product-security/bulletins • CWE-129: Improper Validation of Array Index •

CVE-2018-11305
https://notcve.org/view.php?id=CVE-2018-11305
26 Oct 2018 — When a series of FDAL messages are sent to the modem, a Use After Free condition can occur in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDA660, SDX20. Cuando se envía una serie de mensajes FDAL al módem, puede ocurrir una condición de Uso de memoria previamente liberada en Snapdragon Automobile, Snapdra... • http://www.securitytracker.com/id/1041432 • CWE-416: Use After Free •

CVE-2017-18298
https://notcve.org/view.php?id=CVE-2017-18298
23 Oct 2018 — Lack of Input Validation in SDMX API can lead to NULL pointer access in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660 . La falta de validación de entradas en la API SDMX puede conducir a un acceso de puntero NULL en Snapdragon Automobile, Snapdragon Mobile y Snapdragon Wear en versiones M... • http://www.securitytracker.com/id/1041432 • CWE-476: NULL Pointer Dereference •

CVE-2017-18299
https://notcve.org/view.php?id=CVE-2017-18299
23 Oct 2018 — Improper translation table consolidation logic leads to resource exhaustion and QSEE error in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660 La lógica de consolidación de tablas de traducción conduce al agotamiento de recursos y un error QSEE en Snapdragon Automobile, Snapdragon Mobile y Snapdragon Wear en versiones MDM9206, MDM9607, ... • http://www.securitytracker.com/id/1041432 • CWE-400: Uncontrolled Resource Consumption •

CVE-2017-18303
https://notcve.org/view.php?id=CVE-2017-18303
23 Oct 2018 — While processing the sensors registry configuration file, if inputs are not validated a buffer overflow will occur in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MMDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 600, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 820A, SD 835, SDA660, SDX20. Al procesar el archivo de configuración de registro del sensor, si las entradas no se validan, ocurrirá un desbordamiento... • http://www.securitytracker.com/id/1041432 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-18171
https://notcve.org/view.php?id=CVE-2017-18171
23 Oct 2018 — Improper input validation for GATT data packet received in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDM630, SDM636, SDM660, SDM710, Snapdragon_High_Med_2016. Validación de entradas incorrecta para los paquetes de datos GATT en la función Bluetooth Controller puede conducir a una posible corrupción de... • https://source.android.com/security/bulletin/2018-07-01#qualcomm-closed-source-components • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-18277
https://notcve.org/view.php?id=CVE-2017-18277
23 Oct 2018 — When dynamic memory allocation fails, currently the process sleeps for one second and continues with infinite loop without retrying for memory allocation in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, QCN5502, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 600, SD 615/16/SD 415, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835. Cuando la asignación de memoria dinámica fracasa, actualmente el proceso duerme durante un segundo y contin... • https://source.android.com/security/bulletin/2018-07-01#qualcomm-closed-source-components • CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') •

CVE-2017-18296
https://notcve.org/view.php?id=CVE-2017-18296
23 Oct 2018 — Access control on applications is not applied while accessing SafeSwitch services can lead to improper access in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDA660, SDX20. No se aplica el control de acceso en las aplicaciones al acceder a los servicios SafeSwitch, lo que puede conducir a un acceso incorrecto en Sn... • http://www.securitytracker.com/id/1041432 •

CVE-2017-18297
https://notcve.org/view.php?id=CVE-2017-18297
23 Oct 2018 — Double memory free while closing TEE SE API Session management in Snapdragon Mobile in version SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820. Doble liberación (double free) de memoria al cerrar la gestión de la sesión de la API TEE SE en Snapdragon Mobile en la versión SD 425, SD 430, SD 450, SD 625, SD 650/52 y SD 820. • http://www.securitytracker.com/id/1041432 • CWE-415: Double Free •

CVE-2017-18294
https://notcve.org/view.php?id=CVE-2017-18294
23 Oct 2018 — While reading file class type from ELF header, a buffer overread may happen if the ELF file size is less than the size of ELF64 header size in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version FSM9055, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDA660, SDX20. Al leer el tipo de clase de archivo de la cabecera ELF, podría ocurrir un desbordamiento de búfe... • http://www.securitytracker.com/id/1041432 • CWE-125: Out-of-bounds Read •