← Vulnerability feed

Vulnerability record · CVE-2017-18329 · published 3 January 2019

CVE-2017-18329: Qualcomm mdm9615 firmware memory buffer overflow vulnerability

Qualcomm · Mdm9615 Firmware

Possible Buffer overflow when transmitting an RTP packet in snapdragon automobile and snapdragon wear in versions MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 810, SD 820, SD 835, SD 845 / SD 850, SDA660, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130

7.8 CVSS 3.0 High EPSS 0.24% · top 86.1% CWE-119 · Memory buffer overflow
7.8CVSS 3.0 base score, v2 7.2
0.24%EPSS exploitation probability, 30 days
NoNot in CISA KEV
37Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

Possible Buffer overflow when transmitting an RTP packet in snapdragon automobile and snapdragon wear in versions MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 810, SD 820, SD 835, SD 845 / SD 850, SDA660, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

37 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2017-18329 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2023-22388Qualcomm 315 5g iot modem firmware out-of-bounds write vulnerabilityMemory Corruption in Multi-mode Call Processor while processing bit mask API.EPSS 0.35%9.8CVE-2023-22385Qualcomm 315 5g iot modem firmware out-of-bounds write vulnerabilityMemory Corruption in Data Modem while making a MO call or MT VOLTE call.EPSS 0.42%9.8CVE-2022-40510Qualcomm apq8009 firmware out-of-bounds write vulnerabilityMemory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.EPSS 0.43%9.8CVE-2022-25748Qualcomm apq8009 firmware integer overflow vulnerabilityMemory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Con…EPSS 0.47%9.8CVE-2022-25720Qualcomm apq8009 firmware vulnerabilityMemory corruption in WLAN due to out of bound array access during connect/roaming in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sn…EPSS 0.45%9.8CVE-2022-25718Qualcomm apq8009 firmware unchecked return value vulnerabilityCryptographic issue in WLAN due to improper check on return value while authentication handshake in Snapdragon Auto, Snapdragon Connectivity, Snapdra…EPSS 0.45%9.8CVE-2022-22105Qualcomm apq8009 firmware integer overflow vulnerabilityMemory corruption in bluetooth due to integer overflow while processing HFP-UNIT profile in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobi…EPSS 0.51%9.8CVE-2022-25651Qualcomm apq8009 firmware integer overflow vulnerabilityMemory corruption in bluetooth host due to integer overflow while processing BT HFP-UNIT profile in Snapdragon Auto, Snapdragon Consumer IOT, Snapdra…EPSS 0.88%

Source: NIST National Vulnerability Database (record CVE-2017-18329), CISA KEV, FIRST EPSS (scores of 2026-10-05). This page is refreshed as NVD updates the record.