CVE-2017-18132: Qualcomm MDM9206 Firmware

Critical severity, CVSS 9.8. EPSS: 1.3% chance of exploitation in the next 30 days.

In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Automobile and Snapdragon Mobile MDM9206, MDM9607, MDM8996, an out-of-bounds access can potentially occur in tz_assign().

Affected products

  • Qualcomm MDM9206 Firmware: affected versions not specified
  • Qualcomm MDM9607 Firmware: affected versions not specified
  • Qualcomm MSM8996 Firmware: affected versions not specified

Published 2018-04-11. Last modified 2026-06-17.