PT-2018-10875 · Qualcomm · Snapdragon Mobile

Published

2018-10-29

·

Updated

2019-04-03

·

CVE-2018-11874

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Snapdragon Mobile versions SD 835, SD 845, SD 850, SDA660
Description A buffer overflow occurs when the length of the passphrase exceeds 32 characters during the setup of a secure NDP connection.
Recommendations For Snapdragon Mobile versions SD 835, SD 845, SD 850, SDA660, consider limiting the passphrase length to 32 characters or less when setting up a secure NDP connection to prevent the buffer overflow. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-11874

Affected Products

Snapdragon Mobile