In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 425, SD 427, SD 430, SD 435, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 845, and Snapdragon_High_Med_2016, during module load at TZ Startup, memory statically allocated by modules was not being properly set to zero first. Allowing the module to execute without reset gives it access to information from previous app thus leading to information exposure.

Project Subscriptions

Vendors Products
Qualcomm Subscribe
Sd 205 Firmware Subscribe
Sd 210 Firmware Subscribe
Sd 212 Firmware Subscribe
Sd 400 Firmware Subscribe
Sd 425 Firmware Subscribe
Sd 427 Firmware Subscribe
Sd 430 Firmware Subscribe
Sd 435 Firmware Subscribe
Sd 450 Firmware Subscribe
Sd 617 Firmware Subscribe
Sd 625 Firmware Subscribe
Sd 650 Firmware Subscribe
Sd 652 Firmware Subscribe
Sd 800 Firmware Subscribe
Sd 845 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2015-9047 In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 425, SD 427, SD 430, SD 435, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 845, and Snapdragon_High_Med_2016, during module load at TZ Startup, memory statically allocated by modules was not being properly set to zero first. Allowing the module to execute without reset gives it access to information from previous app thus leading to information exposure.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-09-16T22:01:31.692Z

Reserved: 2017-08-16T00:00:00.000Z

Link: CVE-2015-9194

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-04-18T14:29:07.637

Modified: 2024-11-21T02:40:00.930

Link: CVE-2015-9194

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses