{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-18T10:39:40.151","vulnerabilities":[{"cve":{"id":"CVE-2018-11277","sourceIdentifier":"product-security@qualcomm.com","published":"2018-09-20T13:29:01.167","lastModified":"2024-11-21T03:43:02.667","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In Snapdragon (Automobile, Mobile, Wear) in version MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SD 845, SDA660, the com.qualcomm.embms is a vendor package deployed in the system image which has an inadequate permission level and allows any application installed from Play Store to request this permission at install-time. The system application interfaces with the Radio Interface Layer leading to potential access control issue."},{"lang":"es","value":"En Snapdragon (Automobile, Mobile y Wear) en versiones MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 820A, SD 835, SD 845 y SDA660, com.qualcomm.embms es un paquete del fabricante desplegado en la imagen del sistema que tiene un nivel de permisos inadecuado y permite que cualquier aplicación instalada de la Play Store solicite este permiso en tiempo de instalación. La aplicación del sistema interfiere con Radio Interface Layer, lo que conduce a un potencial problema de control de acceso."}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","baseScore":4.6,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"weaknesses":[{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-732"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:msm8909w_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"FE28A59C-7AA6-4B85-84E8-07852B96108E"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:*","matchCriteriaId":"5DEE828B-09A7-4AC1-8134-491A7C87C118"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:msm8996au_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"8CA1E7B0-782B-4757-B118-802943798984"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:*","matchCriteriaId":"95CB08EC-AE12-4A54-AA3C-998F01FC8763"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd210_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"7D6D6965-B5B2-46D2-8718-43B7B22441C0"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd210:-:*:*:*:*:*:*:*","matchCriteriaId":"E75C7497-A7DC-436B-BACD-71F69D99517D"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd212_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"0AC3A8D2-2860-4A34-B9A8-0077263E4563"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd212:-:*:*:*:*:*:*:*","matchCriteriaId":"B67ABF7B-5719-4C99-87C4-75499E98A281"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd205_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"47AB5135-6391-45C1-81DE-803E3834F196"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd205:-:*:*:*:*:*:*:*","matchCriteriaId":"FCEF246C-6B39-4DC2-81B0-040DCAAD5177"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd430_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"F6652C54-B207-4816-B70D-5DD2C792D1DF"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd430:-:*:*:*:*:*:*:*","matchCriteriaId":"FD3B99CC-CC53-42A6-9C42-0C06E734A554"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd450_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"BF6EA9F3-ED14-4DAC-93D1-2DF63C7C3EAC"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd450:-:*:*:*:*:*:*:*","matchCriteriaId":"C4EF0B75-2431-4E44-B515-11C9BD4BC982"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd615_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"12BB71F6-FABD-423D-AC7D-CA66BCE1A89D"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd615:-:*:*:*:*:*:*:*","matchCriteriaId":"77FB761D-7C87-4A9A-A227-17D5DBE0BDBA"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd616_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"C73516F0-831B-40F0-BAE5-B45660D3507A"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd616:-:*:*:*:*:*:*:*","matchCriteriaId":"AC8F5E3A-2FEF-4713-AC4D-EBAFFD697CE2"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd415_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"45D289EE-7423-4396-9F32-3D576E72238E"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd415:-:*:*:*:*:*:*:*","matchCriteriaId":"43EA6FCE-2BFD-4588-B793-758BA0308C24"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd617_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"9F3D690E-908B-49DF-8341-9CFAE6DF5E44"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd617:-:*:*:*:*:*:*:*","matchCriteriaId":"274F8FC2-F564-4D87-B259-6AB5E035E73E"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd625_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"7C5E72A3-2117-4190-978F-EFB4DDE4EC9F"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd625:-:*:*:*:*:*:*:*","matchCriteriaId":"AD2EEF23-73EB-49AE-B9F1-4702D545D643"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd650_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"3A83A1CF-396D-403F-AA22-0ED817DD384B"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd650:-:*:*:*:*:*:*:*","matchCriteriaId":"21AEAA09-3C1B-4413-8418-63644DB3FABA"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd652_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"E6C536B0-32E9-42D0-B298-B4D77CC94914"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd652:-:*:*:*:*:*:*:*","matchCriteriaId":"8F81E096-820A-4B27-A539-5D3BA39FA5C9"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd810_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"7EA7F1BB-B099-41D3-94A6-196CD4DF2548"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd810:-:*:*:*:*:*:*:*","matchCriteriaId":"4F00BF76-0D5E-4647-9BB5-0B4B57F64110"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd820_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"BC508C49-0B76-43A8-B2AF-0F8EB989E238"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd820:-:*:*:*:*:*:*:*","matchCriteriaId":"E9665200-D306-4EEB-9F42-6C5963524179"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd820a_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"CB757118-0F90-4E6E-AD4F-A05A5791B20C"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd820a:-:*:*:*:*:*:*:*","matchCriteriaId":"2BCD9420-26A7-4444-9AA4-D7B0AC42FA84"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd835_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"9DA605FD-B801-43BB-B52D-879013F7F57E"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd835:-:*:*:*:*:*:*:*","matchCriteriaId":"908BFD96-0423-4AFC-B8F3-105B2D5B4C73"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sd845_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"DB222869-9CDB-43B1-8947-954C8C8520B8"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sd845:-:*:*:*:*:*:*:*","matchCriteriaId":"306DAB18-F737-47DE-A47D-C39F1B25D515"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:qualcomm:sda660_firmware:-:*:*:*:*:*:*:*","matchCriteriaId":"A2326BD7-28A5-4244-8501-B109913E7AE6"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:qualcomm:sda660:-:*:*:*:*:*:*:*","matchCriteriaId":"532D244B-8B5A-4923-B7F1-9DC0A5FC0E9D"}]}]}],"references":[{"url":"https://www.qualcomm.com/company/product-security/bulletins","source":"product-security@qualcomm.com","tags":["Vendor Advisory"]},{"url":"https://www.qualcomm.com/company/product-security/bulletins","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}