Buffer Overflow in Snapdragon Platforms
CVE-2018-5918

7.8HIGH

Key Information:

Vendor
Qualcomm
Vendor
CVE Published:
28 November 2018

Summary

A buffer overflow vulnerability exists in the DRM Trusted application within various Snapdragon products. The issue arises from insufficient checks on function return values, potentially allowing an attacker to execute arbitrary code or disrupt normal operation. This vulnerability affects multiple Snapdragon platforms across various models, emphasizing the importance of timely security updates and code audits.

Affected Version(s)

Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 800, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDA845, SDX24, SXR1130

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
🍪 This website uses cookies, like every other website on the internet 😕 By using our website, you consent to the use of cookies.