PT-2019-8825 · Qualcomm · Qualcomm Snapdragon

Published

2019-02-25

·

Updated

2019-02-26

·

CVE-2018-11932

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon versions MDM9650, MDM9655, MSM8996AU, QCS605, SD 410/12, SD 615/16/SD 415, SD 675, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 8CX, SXR1130.
Description The issue is related to improper input validation, which can lead to read-write access to a secure subsystem from the High-Level Operating System (HLOS) in various Qualcomm Snapdragon products.
Recommendations For versions MDM9650, MDM9655, MSM8996AU, QCS605, SD 410/12, SD 615/16/SD 415, SD 675, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 8CX, SXR1130, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-11932

Affected Products

Qualcomm Snapdragon