Buffer Overflow in Snapdragon Platforms
CVE-2018-5918
7.8HIGH
Key Information:
- Vendor
- Qualcomm
- Vendor
- CVE Published:
- 28 November 2018
Summary
A buffer overflow vulnerability exists in the DRM Trusted application within various Snapdragon products. The issue arises from insufficient checks on function return values, potentially allowing an attacker to execute arbitrary code or disrupt normal operation. This vulnerability affects multiple Snapdragon platforms across various models, emphasizing the importance of timely security updates and code audits.
Affected Version(s)
Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDA845, SDX24, SXR1130
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved