PT-2018-17201 · Qualcomm · Qualcomm Snapdragon Mobile

Published

2018-10-26

·

Updated

2019-01-23

·

CVE-2018-5866

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Qualcomm Snapdragon Mobile versions MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SD 845, SD 850, SDA660
Description: The issue arises during log processing, where data is copied into a buffer pointed to by an untrusted pointer. This occurs in Qualcomm Snapdragon Mobile.
Recommendations: For versions MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SD 845, SD 850, SDA660, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-5866

Affected Products

Qualcomm Snapdragon Mobile