Description
QSEE will randomly experience a fatal error during execution due to speculative instruction fetches from device memory. Device memory is not valid executable memory.
Published: 2024-11-26
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2016-1590 QSEE will randomly experience a fatal error during execution due to speculative instruction fetches from device memory. Device memory is not valid executable memory.
History

Thu, 09 Jan 2025 20:45:00 +0000

Type Values Removed Values Added
First Time appeared Qualcomm 9206 Lte Modem
Qualcomm apq8037
Qualcomm sd626
Qualcomm sd820
Qualcomm sd821
Weaknesses NVD-CWE-Other
CPEs cpe:2.3:h:qualcomm:9206_lte_modem:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8037:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd626:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd820:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd821:-:*:*:*:*:*:*:*
Vendors & Products Qualcomm 9206 Lte Modem
Qualcomm apq8037
Qualcomm sd626
Qualcomm sd820
Qualcomm sd821

Tue, 26 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Qualcomm
Qualcomm 9206 Lte Modem Firmware
Qualcomm apq8037 Firmware
Qualcomm sd626 Firmware
Qualcomm sd820 Firmware
Qualcomm sd821 Firmware
CPEs cpe:2.3:o:qualcomm:9206_lte_modem_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:apq8037_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd626_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd820_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd821_firmware:-:*:*:*:*:*:*:*
Vendors & Products Qualcomm
Qualcomm 9206 Lte Modem Firmware
Qualcomm apq8037 Firmware
Qualcomm sd626 Firmware
Qualcomm sd820 Firmware
Qualcomm sd821 Firmware
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 26 Nov 2024 14:15:00 +0000

Type Values Removed Values Added
Description QSEE will randomly experience a fatal error during execution due to speculative instruction fetches from device memory. Device memory is not valid executable memory.
Title Improper Access Control in Core.
Weaknesses CWE-284
References
Metrics cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Qualcomm 9206 Lte Modem 9206 Lte Modem Firmware Apq8037 Apq8037 Firmware Sd626 Sd626 Firmware Sd820 Sd820 Firmware Sd821 Sd821 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-11-26T15:57:56.464Z

Reserved: 2017-08-16T00:00:00.000Z

Link: CVE-2016-10408

cve-icon Vulnrichment

Updated: 2024-11-26T14:48:13.295Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-26T14:15:17.053

Modified: 2025-01-09T20:17:41.750

Link: CVE-2016-10408

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses