RAM Dump and Firmware Reset Vulnerability in Snapdragon Mobile by Qualcomm
CVE-2017-15841

5.5MEDIUM

Key Information:

Vendor
CVE Published:
6 May 2019

Summary

This vulnerability occurs when a specially crafted command ID packet is sent by the HOST to the Snapdragon Mobile Controller, leading to an unintended RAM dump and firmware reset. This affects multiple versions of Snapdragon products, potentially compromising the integrity of the device and allowing for unauthorized access to sensitive information.

Affected Version(s)

Snapdragon Mobile SD 410/12

Snapdragon Mobile SD 425

Snapdragon Mobile SD 427

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.