Qualcomm Chipsets information disclosure | CVE-2023-28586

NAME
__________
Qualcomm Chipsets information disclosure

Platforms Affected:
Qualcomm WCD9380
Qualcomm WSA8830
Qualcomm WSA8835
Qualcomm AQT1000
Qualcomm CSRB31024
Qualcomm WCD9370
Qualcomm WCD9375
Qualcomm WCD9385

Risk Level:
6

Exploitability:
Unproven

Consequences:
Obtain Information

DESCRIPTION
__________

Qualcomm Chipsets could allow a local authenticated attacker to obtain sensitive information, caused by a flaw when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. By executing a specially crafted application, an attacker could exploit this vulnerability to obtain sensitive information, and use this information to launch further attacks against the affected system.

CVSS 3.0 Information
__________

Privileges Required:
High

User Interaction:
None

Scope:
Changed

Access Vector:
Local


A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on “Patreon” or “Buy Me A Coffee” using the buttons below

To keep up to date follow us on the below channels.