PT-2019-8839 · Qualcomm · Sd 16+36

Published

2019-05-24

·

Updated

2019-05-29

·

CVE-2018-11953

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon Auto versions MDM9150 Qualcomm Snapdragon Consumer Electronics Connectivity versions MDM9150 Qualcomm Snapdragon Consumer IOT versions MDM9150 Qualcomm Snapdragon Industrial IOT versions MDM9150 Qualcomm Snapdragon IoT versions MDM9150 Qualcomm Snapdragon Mobile versions MDM9150 Qualcomm Snapdragon Voice & Music versions MDM9150 Qualcomm Snapdragon Wearables versions MDM9150 Qualcomm MDM9206 Qualcomm MDM9607 Qualcomm MDM9640 Qualcomm MDM9650 Qualcomm MSM8909W Qualcomm MSM8996AU Qualcomm QCA6174A Qualcomm QCA6574AU Qualcomm QCA9377 Qualcomm QCA9379 Qualcomm 215 Qualcomm SD 210 Qualcomm SD 212 Qualcomm SD 205 Qualcomm SD 425 Qualcomm SD 439 Qualcomm SD 429 Qualcomm SD 450 Qualcomm SD 615 Qualcomm SD 16 Qualcomm SD 415 Qualcomm SD 625 Qualcomm SD 632 Qualcomm SD 650 Qualcomm SD 52 Qualcomm SD 820 Qualcomm SD 820A Qualcomm SDM439 Qualcomm SDX20
Description A possible out-of-bounds access may occur due to a crafted ssid IE length from a remote AP while processing the ssid IE length. This issue affects various Qualcomm Snapdragon products.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-11953

Affected Products

215
Mdm9206
Mdm9607
Mdm9640
Mdm9650
Msm8909W
Msm8996Au
Qca6174A
Qca6574Au
Qca9377
Qca9379
Sd 16
Sd 205
Sd 210
Sd 212
Sd 415
Sd 425
Sd 429
Sd 439
Sd 450
Sd 52
Sd 615
Sd 625
Sd 632
Sd 650
Sd 820
Sd 820A
Sdm439
Sdx20
Snapdragon Auto
Snapdragon Consumer Electronics Connectivity
Snapdragon Consumer Iot
Snapdragon Industrial Iot
Snapdragon Iot
Snapdragon Mobile
Snapdragon Voice & Music
Snapdragon Wearables