Improper access control in core module lead XBL_LOADER performs the ZI region clear for QTEE instead of XBL_SEC in Snapdragon Mobile in version SD 845, SD 850.
References
Link | Resource |
---|---|
https://www.qualcomm.com/company/product-security/bulletins | Vendor Advisory |
Information
Published : 2018-10-26 06:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-11951
Mitre link : CVE-2018-11951
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
qualcomm
- sd_845
- sd_845_firmware
- sd_850
- sd_850_firmware