CVE-2018-11305: Use After Free
When a series of FDAL messages are sent to the modem, a Use After Free condition can occur in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SDA660, SDX20.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11305?
CVE-2018-11305 has been classified with a high severity level due to the potential for exploitation through a Use After Free condition.
How do I fix CVE-2018-11305?
To fix CVE-2018-11305, users should update their device's firmware to the latest version released by Qualcomm or their device manufacturer.
Which devices are affected by CVE-2018-11305?
CVE-2018-11305 affects various Qualcomm chipsets, including MDM9206, MDM9607, MDM9640, MDM9650, and several Snapdragon series processors.
What are the potential risks of CVE-2018-11305?
Exploitation of CVE-2018-11305 could lead to unauthorized access or control over affected devices, potentially compromising user data.
Is it safe to use devices with CVE-2018-11305 vulnerability?
Until patches are applied, using affected devices poses security risks and is not recommended.