CVE-2018-11864 PUBLISHED CVSS 4.900000095367432 MEDIUM

Bytes can be written to fuses from Secure region which can be read later by HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in versions IPQ8074, MDM9150, MDM9206, MDM9607, MDM9650, MDM9655, MSM8996AU, QCA8081, QCS605, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 650/52, SD 675, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130.

EPSS 0.05% · 15.9th percentile

Risk Scores

CVSS v2.0
4.900000095367432
EPSS Score
0.05%
15.9th percentile

Affected Products

VendorProductVersions
qualcommsd_212_firmware
qualcommsd_845_firmware
qualcommsd_710_firmware
qualcommsd_625_firmware
qualcommsd_412_firmware
qualcommsd_820a_firmware
qualcommqcs605_firmware
qualcommmdm9607_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingIPQ8074, MDM9150, MDM9206, MDM9607, MDM9650, MDM9655, MSM8996AU, QCA8081, QCS605, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 650/52, SD 675, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130
qualcommsda660_firmware
qualcommsd_670_firmware
qualcommsd_652_firmware
qualcommipq8074_firmware
qualcommsd_435_firmware
qualcommsd_675_firmware
qualcommsdm660_firmware
qualcommsdm630_firmware
qualcommsd_410_firmware
qualcommsd_425_firmware
qualcommqca8081_firmware

…and 23 more

Timeline

References

Open in Interactive Console →