CVE-2017-17772

In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:sd_450_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_450:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:sd_625_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_625:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:sd_820_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_820:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:sd_820a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_820a:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:sd_835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_835:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:sd_845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_845:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:sd_850_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_850:-:*:*:*:*:*:*:*

History

09 Jan 2025, 21:01

Type Values Removed Values Added
CWE CWE-125
CPE cpe:2.3:o:qualcomm:sd_450_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd_850_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd_820_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_450:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd_625_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_835:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_820:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_820a:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd_835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd_820a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_845:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd_845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_625:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd_850:-:*:*:*:*:*:*:*
First Time Qualcomm
Qualcomm sd 450
Qualcomm sd 450 Firmware
Qualcomm sd 820 Firmware
Qualcomm sd 835 Firmware
Qualcomm sd 835
Qualcomm sd 820a
Qualcomm sd 820
Qualcomm sd 820a Firmware
Qualcomm sd 850 Firmware
Qualcomm sd 845 Firmware
Qualcomm sd 850
Qualcomm sd 625
Qualcomm sd 625 Firmware
Qualcomm sd 845
Summary
  • (es) En múltiples funciones que procesan tramas 802.11, pueden ocurrir lecturas fuera de los límites debido a una validación insuficiente.
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2018-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2018-bulletin.html - Vendor Advisory

26 Nov 2024, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-26 09:15

Updated : 2025-01-09 21:01


NVD link : CVE-2017-17772

Mitre link : CVE-2017-17772

CVE.ORG link : CVE-2017-17772


JSON object : View

Products Affected

qualcomm

  • sd_450
  • sd_625
  • sd_850_firmware
  • sd_820
  • sd_835_firmware
  • sd_450_firmware
  • sd_820a_firmware
  • sd_845
  • sd_850
  • sd_820_firmware
  • sd_835
  • sd_820a
  • sd_845_firmware
  • sd_625_firmware
CWE
CWE-126

Buffer Over-read

CWE-125

Out-of-bounds Read