CVE-2017-18294
Summary
| CVE | CVE-2017-18294 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-10-23 13:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | While reading file class type from ELF header, a buffer overread may happen if the ELF file size is less than the size of ELF64 header size in Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version FSM9055, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDA660, SDX20. |
Risk And Classification
Problem Types: CWE-125
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Fsm9055 | - | All | All | All |
| Hardware | Qualcomm | Fsm9055 | - | All | All | All |
| Operating System | Qualcomm | Fsm9055 Firmware | - | All | All | All |
| Operating System | Qualcomm | Fsm9055 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9206 | - | All | All | All |
| Hardware | Qualcomm | Mdm9206 | - | All | All | All |
| Operating System | Qualcomm | Mdm9206 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9206 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9607 | - | All | All | All |
| Hardware | Qualcomm | Mdm9607 | - | All | All | All |
| Operating System | Qualcomm | Mdm9607 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9607 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9650 | - | All | All | All |
| Hardware | Qualcomm | Mdm9650 | - | All | All | All |
| Operating System | Qualcomm | Mdm9650 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9650 Firmware | - | All | All | All |
| Hardware | Qualcomm | Msm8909w | - | All | All | All |
| Hardware | Qualcomm | Msm8909w | - | All | All | All |
| Operating System | Qualcomm | Msm8909w Firmware | - | All | All | All |
| Operating System | Qualcomm | Msm8909w Firmware | - | All | All | All |
| Hardware | Qualcomm | Msm8996au | - | All | All | All |
| Hardware | Qualcomm | Msm8996au | - | All | All | All |
| Operating System | Qualcomm | Msm8996au Firmware | - | All | All | All |
| Operating System | Qualcomm | Msm8996au Firmware | - | All | All | All |
| Hardware | Qualcomm | Sda660 | - | All | All | All |
| Hardware | Qualcomm | Sda660 | - | All | All | All |
| Operating System | Qualcomm | Sda660 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sda660 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sdx20 | - | All | All | All |
| Hardware | Qualcomm | Sdx20 | - | All | All | All |
| Operating System | Qualcomm | Sdx20 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sdx20 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 205 | - | All | All | All |
| Hardware | Qualcomm | Sd 205 | - | All | All | All |
| Operating System | Qualcomm | Sd 205 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 205 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 210 | - | All | All | All |
| Hardware | Qualcomm | Sd 210 | - | All | All | All |
| Operating System | Qualcomm | Sd 210 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 210 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 212 | - | All | All | All |
| Hardware | Qualcomm | Sd 212 | - | All | All | All |
| Operating System | Qualcomm | Sd 212 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 212 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 415 | - | All | All | All |
| Hardware | Qualcomm | Sd 415 | - | All | All | All |
| Operating System | Qualcomm | Sd 415 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 415 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 425 | - | All | All | All |
| Hardware | Qualcomm | Sd 425 | - | All | All | All |
| Operating System | Qualcomm | Sd 425 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 425 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 430 | - | All | All | All |
| Hardware | Qualcomm | Sd 430 | - | All | All | All |
| Operating System | Qualcomm | Sd 430 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 430 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 450 | - | All | All | All |
| Hardware | Qualcomm | Sd 450 | - | All | All | All |
| Operating System | Qualcomm | Sd 450 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 450 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 615 | - | All | All | All |
| Hardware | Qualcomm | Sd 615 | - | All | All | All |
| Operating System | Qualcomm | Sd 615 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 615 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 616 | - | All | All | All |
| Hardware | Qualcomm | Sd 616 | - | All | All | All |
| Operating System | Qualcomm | Sd 616 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 616 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 625 | - | All | All | All |
| Hardware | Qualcomm | Sd 625 | - | All | All | All |
| Operating System | Qualcomm | Sd 625 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 625 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 650 | - | All | All | All |
| Hardware | Qualcomm | Sd 650 | - | All | All | All |
| Operating System | Qualcomm | Sd 650 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 650 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 652 | - | All | All | All |
| Hardware | Qualcomm | Sd 652 | - | All | All | All |
| Operating System | Qualcomm | Sd 652 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 652 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 820 | - | All | All | All |
| Hardware | Qualcomm | Sd 820 | - | All | All | All |
| Hardware | Qualcomm | Sd 820a | - | All | All | All |
| Hardware | Qualcomm | Sd 820a | - | All | All | All |
| Operating System | Qualcomm | Sd 820a Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820a Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 835 | - | All | All | All |
| Hardware | Qualcomm | Sd 835 | - | All | All | All |
| Operating System | Qualcomm | Sd 835 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 835 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 845 | - | All | All | All |
| Hardware | Qualcomm | Sd 845 | - | All | All | All |
| Operating System | Qualcomm | Sd 845 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 845 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Android Security Bulletin—August 2018 | Android Open Source Project | CONFIRM | source.android.com | Third Party Advisory |
| Google Android Multiple Flaws Let Remote Users Execute Arbitrary Code and Let Applications Gain Elevated Privileges and Obtain Potentially Sensitive Information - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| Bulletins | Qualcomm | CONFIRM | www.qualcomm.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.