CVE-2017-18311
EUVD-2017-943726.10.2018, 13:29
XPU Master privilege escalation is possible due to improper access control of unused configuration xPU ports where unused configuration ports are open in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SDA660, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, Snapdragon_High_Med_2016.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| qualcomm | mdm9607_firmware | - |
| qualcomm | mdm9635m_firmware | - |
| qualcomm | mdm9640_firmware | - |
| qualcomm | mdm9645_firmware | - |
| qualcomm | mdm9650_firmware | - |
| qualcomm | mdm9655_firmware | - |
| qualcomm | msm8909w_firmware | - |
| qualcomm | msm8996au_firmware | - |
| qualcomm | sd_210_firmware | - |
| qualcomm | sd_212_firmware | - |
| qualcomm | sd_205_firmware | - |
| qualcomm | sd_410_firmware | - |
| qualcomm | sd_412_firmware | - |
| qualcomm | sd_425_firmware | - |
| qualcomm | sd_427_firmware | - |
| qualcomm | sd_430_firmware | - |
| qualcomm | sd_435_firmware | - |
| qualcomm | sd_450_firmware | - |
| qualcomm | sd_615_firmware | - |
| qualcomm | sd_616_firmware | - |
| qualcomm | sd_415_firmware | - |
| qualcomm | sd_625_firmware | - |
| qualcomm | sd_650_firmware | - |
| qualcomm | sd_652_firmware | - |
| qualcomm | sd_810_firmware | - |
| qualcomm | sd_820_firmware | - |
| qualcomm | sd_820a_firmware | - |
| qualcomm | sd_835_firmware | - |
| qualcomm | sda660_firmware | - |
| qualcomm | sdm429_firmware | - |
| qualcomm | sdm439_firmware | - |
| qualcomm | sdm630_firmware | - |
| qualcomm | sdm632_firmware | - |
| qualcomm | sdm636_firmware | - |
| qualcomm | sdm660_firmware | - |
𝑥
= Vulnerable software versions