ZeroHour

CVE-2018-11866

CVSS 3.0
7.8 high
EPSS
<1%p14
Published
()
Modified
Description

Integer overflow may happen in WLAN when calculating an internal structure size due to lack of validation of the input length in Snapdragon Mobile, Snapdragon Wear in version IPQ8074, MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 835, SD 845, SD 850, SDA660, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, SDM710, Snapdragon_High_Med_2016.

Vendors
qualcomm
Products
ipq8074 firmware, mdm9206 firmware, mdm9607 firmware, mdm9650 firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 425 firmware, sd 427 firmware, sd 430 firmware, sd 435 firmware, sd 450 firmware
Weakness
CWE-190
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.