ZeroHour

CVE-2018-13914

CVSS 3.0
7.8 high
EPSS
<1%p11
Published
()
Modified
Description

Lack of input validation for data received from user space can lead to an out of bound array issue in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in version MDM9150, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 636, SD 820A, SD 835, SDM630, SDM660, SDX20.

Vendors
qualcomm
Products
snapdragon auto firmware, snapdragon consumer internet of things firmware, snapdragon industrial internet of things firmware, mdm9150 firmware, mdm9206 firmware, mdm9607 firmware, mdm9650 firmware, msm8909w firmware, msm8996au firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware
Weakness
CWE-119
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.