cve/2018/CVE-2018-3595.md

19 lines
1.0 KiB
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2018-3595](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-3595)
![](https://img.shields.io/static/v1?label=Product&message=Snapdragon%20Automobile%2C%20Snapdragon%20Mobile%2C%20Snapdragon%20Wear&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Detection%20of%20Error%20Condition%20Without%20Action%20in%20TrustZone&color=brighgreen)
### Description
Anti-rollback can be bypassed in replay scenario during app loading due to improper error handling of RPMB writes in snapdragon automobile, snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SDA660, SDX24, SXR1130
### POC
#### Reference
- https://www.qualcomm.com/company/product-security/bulletins
2024-06-09 00:33:16 +00:00
- https://www.qualcomm.com/company/product-security/bulletins
2024-05-26 14:27:05 +02:00
#### Github
No PoCs found on GitHub currently.