CVE-2018-11287: Input Validation
In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, SDM710, SnapdragonHighMed2016, incorrect control flow implementation in Video while checking buffer sufficiency.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-11287?
CVE-2018-11287 is a vulnerability in Snapdragon (Automobile, Mobile, Wear) in multiple Qualcomm products that could allow an attacker to execute arbitrary code within the context of the kernel.
What is the severity of CVE-2018-11287?
CVE-2018-11287 has a severity rating of 9.8 out of 10, which is classified as critical.
Which software and devices are affected by CVE-2018-11287?
CVE-2018-11287 affects multiple Qualcomm products including MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, and SDM710.
How can I fix CVE-2018-11287?
To fix CVE-2018-11287, it is recommended to apply the relevant patches provided by Qualcomm and Google.
Where can I find more information about CVE-2018-11287?
More information about CVE-2018-11287 can be found on the Google Android Security Bulletin, Qualcomm Product Security Bulletins, and the official Android documentation.