Uninitialized Variable Leaves SecureX Subscribers Vulnerable to Information Disclosure
CVE-2017-18306

5.5MEDIUM

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
26 November 2024

What is CVE-2017-18306?

The vulnerability arises from an uninitialized variable in Qualcomm's software components, leading to potential information disclosure. Attackers may exploit this flaw to access sensitive data that should remain protected, posing significant risks to user privacy and data integrity. It is crucial for users and organizations utilizing affected Qualcomm products to implement security measures, such as updates and patches, to mitigate potential threats stemming from this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Snapdragon Snapdragon Mobile SD 450

Snapdragon Snapdragon Mobile SD 625

Snapdragon Snapdragon Mobile SD 820

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.