← Back

CVE-2017-5947

nvd nist
Published: Mar 29, 2018Modified: Nov 21, 2024

JSON object

Loading...
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: NVD

Description

An issue was discovered in OnePlus One, X, 2, 3, 3T, and 5 devices with OxygenOS 5.0 and earlier. The attacker can reboot the device into the Qualcomm Emergency Download (EDL) mode through ADB or by using Volume-Up when connected to USB, which in turn could allow for downgrading partitions such as the Android Bootloader.

Affected (1)

Products: Oneplus: Oxygenos
1 product
Oxygenos
Configuration A
1 vulnerable · 6 platform
Vulnerable SoftwareAffected Versions
Up to 5.0
Running on/withPlatform Versions
Oneplus
Oneplus 2
All versions
Oneplus
Oneplus 3
All versions
Oneplus
Oneplus 3t
All versions
Oneplus
Oneplus 5
All versions
Oneplus
Oneplus One
All versions
Oneplus
Oneplus X
All versions

References (2)

Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.