ZeroHour

CVE-2018-13910

CVSS 3.0
7.8 high
EPSS
<1%p11
Published
()
Modified
Description

Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ8074, MDM9206, MDM9607, MDM9650, MDM9655, MSM8996AU, QCA8081, Qualcomm 215, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 650/52, SD 820, SD 820A, SDM439, Snapdragon_High_Med_2016

Vendors
qualcomm
Products
ipq8074 firmware, mdm9206 firmware, mdm9607 firmware, mdm9650 firmware, mdm9655 firmware, msm8996au firmware, qca8081 firmware, qm215 firmware, sd 410 firmware, sd 412 firmware, sd 425 firmware, sd 427 firmware
Weakness
CWE-125
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.