
CVE-2017-18293
https://notcve.org/view.php?id=CVE-2017-18293
23 Oct 2018 — When a particular GPIO is protected by blocking access to the corresponding GPIO resource registers, the protection can be bypassed using the corresponding banked GPIO registers instead in Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SDA660. Cuando un GPIO en concreto está protegido bloqueando el acceso a los registros de recursos GPIO correspondientes, la protección se puede omitir mediante los registros GP... • http://www.securitytracker.com/id/1041432 •

CVE-2017-18172
https://notcve.org/view.php?id=CVE-2017-18172
23 Oct 2018 — In a device, with screen size 1440x2560, the check of contiguous buffer will overflow on certain buffer size resulting in an Integer Overflow or Wraparound in System UI in Snapdragon Automobile, Snapdragon Mobile in version MDM9635M, SD 400, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 820A, SD 835, SDM630, SDM636, SDM660, Snapdragon_High_Med_2016. En un dispositivo, con un tamaño de pantalla de 1440x2560, la comprobación de un bú... • https://source.android.com/security/bulletin/2018-07-01#qualcomm-closed-source-components • CWE-190: Integer Overflow or Wraparound •

CVE-2017-18170
https://notcve.org/view.php?id=CVE-2017-18170
23 Oct 2018 — Improper input validation in Bluetooth Controller function can lead to possible memory corruption in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 835, SD 845, SD 850, SDM630, SDM636, SDM660, SDM710, Snapdragon_High_Med_2016. Validación de entradas incorrecta en la función Bluetooth Controller puede conducir a una posible corrupción de memoria en Snapdragon Mobile en versiones QCA9379, SD 210/SD ... • https://source.android.com/security/bulletin/2018-07-01#qualcomm-closed-source-components • CWE-191: Integer Underflow (Wrap or Wraparound) •

CVE-2017-18283
https://notcve.org/view.php?id=CVE-2017-18283
23 Oct 2018 — Possible memory corruption when Read Val Blob Req is received with invalid parameters in Snapdragon Mobile in version QCA9379, SD 210/SD 212/SD 205, SD 625, SD 835, SD 845, SD 850, SDA660. Posible corrupción de memoria cuando se recibe Read Val Blob Req con parámetros inválidos en Snapdragon Mobile en versiones QCA9379, SD 210/SD 212/SD 205, SD 625, SD 835, SD 845, SD 850 y SDA660. • http://www.securitytracker.com/id/1041432 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-18295
https://notcve.org/view.php?id=CVE-2017-18295
23 Oct 2018 — Possible buffer overflow if input is not null terminated in DSP Service module in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SDX20. Posible desbordamiento de búfer si la entrada no está acabada en null en el módulo del servicio DSP en Snapdragon Automobile, Snapdragon Mobile y Snapdragon Wear en la versión MDM9206, MDM9607, MDM9650, MSM8909W, M... • http://www.securitytracker.com/id/1041432 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-18292
https://notcve.org/view.php?id=CVE-2017-18292
23 Oct 2018 — Secure app running in non secure space can restart TZ by calling Widevine app API repeatedly in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 820A. Una aplicación segura ejecutándose en un espacio no seguro puede reiniciar TZ llamando a la API de la app Widevine repetidamente en Snapdragon Automobile, Snapdragon Mobile y Snapdragon W... • http://www.securitytracker.com/id/1041432 • CWE-20: Improper Input Validation •

CVE-2017-18304
https://notcve.org/view.php?id=CVE-2017-18304
23 Oct 2018 — Insufficient memory allocation in boot due to incorrect size being passed could result in out of bounds access in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in version FSM9055, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SDA660 and SDX20 Asignación de memoria insuficiente en boot debido a que se pasa el tamaño incorrecto podría resultar en... • http://www.securitytracker.com/id/1041432 • CWE-125: Out-of-bounds Read •

CVE-2017-18155
https://notcve.org/view.php?id=CVE-2017-18155
12 Jul 2018 — While playing HEVC content using HD DMB in Snapdragon Automobile and Snapdragon Mobile in version MSM8996AU, SD 450, SD 625, SD 820, SD 820A, SD 835, an uninitialized variable can be used leading to a kernel fault. Al reproducir contenido HEVC mediante HD DMB en Snapdragon Automobile y Snapdragon Mobile en las versiones MSM8996AU, SD 450, SD 625, SD 820, SD 820A y SD 835, puede emplearse una variable no inicializada, lo que conduce a un fallo del kernel. • https://source.android.com/security/bulletin/2018-06-01#qualcomm-components • CWE-20: Improper Input Validation •

CVE-2018-5874
https://notcve.org/view.php?id=CVE-2018-5874
06 Jul 2018 — While parsing an mp4 file, a stack-based buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear. Al analizar un archivo MP4, podría ocurrir un desbordamiento de búfer basado en pila en Snapdragon Automobile, Snapdragon Mobile y Snapdragon Wear. • https://www.qualcomm.com/company/product-security/bulletins • CWE-787: Out-of-bounds Write •

CVE-2018-5878
https://notcve.org/view.php?id=CVE-2018-5878
06 Jul 2018 — While sending the response to a RIL_REQUEST_GET_SMSC_ADDRESS message, a buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear. Al enviar la respuesta a un mensaje RIL_REQUEST_GET_SMSC_ADDRESS, podría ocurrir un desbordamiento de búfer en Snapdragon Automobile, Snapdragon Mobile y Snapdragon Wear. • https://www.qualcomm.com/company/product-security/bulletins • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •