ZeroHour

CVE-2018-13888

CVSS 3.0
7.8 high
EPSS
<1%p14
Published
()
Modified
Description

There is potential for memory corruption in the RIL daemon due to de reference of memory outside the allocated array length in RIL in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in versions MDM9206, MDM9607, MDM9635M, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 636, SD 650/52, SD 675, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDM439, SDM630, SDM660, ZZ_QCS605.

Vendors
qualcomm
Products
mdm9206 firmware, mdm9607 firmware, mdm9635m firmware, mdm9650 firmware, msm8909w firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 425 firmware, sd 427 firmware, sd 430 firmware, sd 435 firmware
Weakness
CWE-119
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.