CVE-2018-13896
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
XBL_SEC image authentication and other crypto related validations are accessible to a compromised OEM XBL Loader due to missing lock at XBL_SEC stage.. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in MDM9206, MDM9607, MDM9650, MDM9655, MSM8996AU, QCS404, QCS605, Qualcomm 215, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130
La autenticación de imagen XBL_SEC puede ser accedida y otras comprobaciones relacionadas con criptografía en un Cargador OEM XBL comprometido debido a la falta de bloqueo en la etapa XBL_SEC.. en los productos Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking en las versiones MDM9206, MDM9607, MDM9650, MDM9655, MSM8996AU, QCS404, QCS605, Qualcomm 215, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-07-11 CVE Reserved
- 2019-07-22 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-284: Improper Access Control
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.qualcomm.com/company/product-security/bulletins | 2019-07-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Qualcomm Search vendor "Qualcomm" | Mdm9206 Firmware Search vendor "Qualcomm" for product "Mdm9206 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9206 Search vendor "Qualcomm" for product "Mdm9206" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Mdm9607 Firmware Search vendor "Qualcomm" for product "Mdm9607 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9607 Search vendor "Qualcomm" for product "Mdm9607" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Mdm9650 Firmware Search vendor "Qualcomm" for product "Mdm9650 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9650 Search vendor "Qualcomm" for product "Mdm9650" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Mdm9655 Firmware Search vendor "Qualcomm" for product "Mdm9655 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9655 Search vendor "Qualcomm" for product "Mdm9655" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Msm8996au Firmware Search vendor "Qualcomm" for product "Msm8996au Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Msm8996au Search vendor "Qualcomm" for product "Msm8996au" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Qcs404 Firmware Search vendor "Qualcomm" for product "Qcs404 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Qcs404 Search vendor "Qualcomm" for product "Qcs404" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Qcs605 Firmware Search vendor "Qualcomm" for product "Qcs605 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Qcs605 Search vendor "Qualcomm" for product "Qcs605" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Qualcomm 215 Firmware Search vendor "Qualcomm" for product "Qualcomm 215 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Qualcomm 215 Search vendor "Qualcomm" for product "Qualcomm 215" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 410 Firmware Search vendor "Qualcomm" for product "Sd 410 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 410 Search vendor "Qualcomm" for product "Sd 410" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 412 Firmware Search vendor "Qualcomm" for product "Sd 412 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 412 Search vendor "Qualcomm" for product "Sd 412" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 425 Firmware Search vendor "Qualcomm" for product "Sd 425 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 425 Search vendor "Qualcomm" for product "Sd 425" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 427 Firmware Search vendor "Qualcomm" for product "Sd 427 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 427 Search vendor "Qualcomm" for product "Sd 427" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 430 Firmware Search vendor "Qualcomm" for product "Sd 430 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 430 Search vendor "Qualcomm" for product "Sd 430" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 435 Firmware Search vendor "Qualcomm" for product "Sd 435 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 435 Search vendor "Qualcomm" for product "Sd 435" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 439 Firmware Search vendor "Qualcomm" for product "Sd 439 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 439 Search vendor "Qualcomm" for product "Sd 439" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 429 Firmware Search vendor "Qualcomm" for product "Sd 429 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 429 Search vendor "Qualcomm" for product "Sd 429" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 450 Firmware Search vendor "Qualcomm" for product "Sd 450 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 450 Search vendor "Qualcomm" for product "Sd 450" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 625 Firmware Search vendor "Qualcomm" for product "Sd 625 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 625 Search vendor "Qualcomm" for product "Sd 625" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 632 Firmware Search vendor "Qualcomm" for product "Sd 632 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 632 Search vendor "Qualcomm" for product "Sd 632" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 636 Firmware Search vendor "Qualcomm" for product "Sd 636 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 636 Search vendor "Qualcomm" for product "Sd 636" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 712 Firmware Search vendor "Qualcomm" for product "Sd 712 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 712 Search vendor "Qualcomm" for product "Sd 712" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 710 Firmware Search vendor "Qualcomm" for product "Sd 710 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 710 Search vendor "Qualcomm" for product "Sd 710" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 670 Firmware Search vendor "Qualcomm" for product "Sd 670 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 670 Search vendor "Qualcomm" for product "Sd 670" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 820 Firmware Search vendor "Qualcomm" for product "Sd 820 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 820 Search vendor "Qualcomm" for product "Sd 820" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 820a Firmware Search vendor "Qualcomm" for product "Sd 820a Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 820a Search vendor "Qualcomm" for product "Sd 820a" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 835 Firmware Search vendor "Qualcomm" for product "Sd 835 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 835 Search vendor "Qualcomm" for product "Sd 835" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 845 Firmware Search vendor "Qualcomm" for product "Sd 845 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 845 Search vendor "Qualcomm" for product "Sd 845" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 850 Firmware Search vendor "Qualcomm" for product "Sd 850 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 850 Search vendor "Qualcomm" for product "Sd 850" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 855 Firmware Search vendor "Qualcomm" for product "Sd 855 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 855 Search vendor "Qualcomm" for product "Sd 855" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 8cx Firmware Search vendor "Qualcomm" for product "Sd 8cx Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 8cx Search vendor "Qualcomm" for product "Sd 8cx" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sda660 Firmware Search vendor "Qualcomm" for product "Sda660 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sda660 Search vendor "Qualcomm" for product "Sda660" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdm439 Firmware Search vendor "Qualcomm" for product "Sdm439 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdm439 Search vendor "Qualcomm" for product "Sdm439" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdm630 Firmware Search vendor "Qualcomm" for product "Sdm630 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdm630 Search vendor "Qualcomm" for product "Sdm630" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdm660 Firmware Search vendor "Qualcomm" for product "Sdm660 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdm660 Search vendor "Qualcomm" for product "Sdm660" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Snapdragon High Med 2016 Firmware Search vendor "Qualcomm" for product "Snapdragon High Med 2016 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Snapdragon High Med 2016 Search vendor "Qualcomm" for product "Snapdragon High Med 2016" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sxr1130 Firmware Search vendor "Qualcomm" for product "Sxr1130 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sxr1130 Search vendor "Qualcomm" for product "Sxr1130" | - | - |
Safe
|