CVE-2018-11258: Use After Free
In ADSP RPC in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, a Use After Free condition can occur in versions MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 450, SD 615/16/SD 415, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDX20.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11258?
CVE-2018-11258 is rated as a high severity vulnerability due to the potential for exploitation via a Use After Free condition.
How do I fix CVE-2018-11258?
To fix CVE-2018-11258, you should immediately update your device to the latest firmware or software version provided by Qualcomm.
Which devices are affected by CVE-2018-11258?
CVE-2018-11258 affects various Qualcomm Snapdragon components including MDM9206, MDM9607, MDM9650, and several Snapdragon SD models.
What are the potential impacts of CVE-2018-11258?
Exploitation of CVE-2018-11258 could allow an attacker to execute arbitrary code in the context of the affected device.
Is there a workaround for CVE-2018-11258?
There are no known workarounds for CVE-2018-11258; the only effective mitigation is to apply the necessary updates.