CVE-2018-5914
—CVSS 3.0
7.8 high
EPSS
<1%p11
Published
()
Modified
Description
Improper input validation in TZ led to array out of bound in TZ function while accessing the peripheral details using the incoming data in Snapdragon Mobile, Snapdragon Wear version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SDA660.
- Vendors
- qualcomm
- Products
- mdm9206 firmware, mdm9607 firmware, mdm9650 firmware, sd 210 firmware, sd 212 firmware, sd 205 firmware, sd 425 firmware, sd 430 firmware, sd 450 firmware, sd 625 firmware, sd 650 firmware, sd 652 firmware
- Weakness
- CWE-129
- Vector
- CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.