CVE-2018-11925
—CVSS 3.0
7.8 high
EPSS
<1%p11
Published
()
Modified
Description
Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ8064, IPQ8074, MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, QCS605, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24
- Vendors
- qualcomm
- Products
- ipq4019 firmware, ipq8064 firmware, ipq8074 firmware, mdm9150 firmware, mdm9206 firmware, mdm9607 firmware, mdm9640 firmware, mdm9650 firmware, qcs605 firmware, sd 425 firmware, sd 427 firmware, sd 430 firmware
- Weakness
- CWE-190
- Vector
- CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.