ZeroHour

CVE-2018-11998

CVSS 3.0
7.5 high
EPSS
<1%p16
Published
()
Modified
Description

While processing a packet decode request in MQTT, Race condition can occur leading to an out-of-bounds access in snapdragon mobile and snapdragon wear in versions MDM9206, MDM9607, SD 210/SD 212/SD 205, SD 427, SD 435, SD 450, SD 625, SD 636, SD 835, SDA660, SDM630, SDM660, Snapdragon_High_Med_2016

Vendors
qualcomm
Products
mdm9206 firmware, mdm9607 firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 427 firmware, sd 435 firmware, sd 450 firmware, sd 625 firmware, sd 636 firmware, sd 835 firmware, sda660 firmware
Weakness
CWE-362
Vector
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.