First published: Tue Sep 04 2018(Updated: )
Crafted Binder Request Causes Heap UAF in MediaServer
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
All of | ||
Qualcomm 9206 LTE Firmware | ||
Qualcomm 9206 LTE | ||
All of | ||
qualcomm apq8016 | ||
Qualcomm APQ8016 Firmware | ||
All of | ||
Qualcomm APQ8017 | ||
Qualcomm APQ8017 | ||
All of | ||
Qualcomm APQ8039 Firmware | ||
Qualcomm APQ8039 Firmware | ||
All of | ||
Qualcomm PQ8052 Firmware | ||
Qualcomm APQ8052 | ||
All of | ||
Qualcomm APQ8056 Firmware | ||
Qualcomm APQ8056 Firmware | ||
All of | ||
qualcomm apq8076 firmware | ||
Qualcomm APQ8076 | ||
All of | ||
Qualcomm AQT1000 Firmware | ||
Qualcomm AQT1000 Firmware | ||
All of | ||
Qualcomm AR6003 Firmware | ||
Qualcomm AR6003 Firmware | ||
All of | ||
Qualcomm SDM660 Firmware | ||
Qualcomm Snapdragon 660 | ||
All of | ||
Qualcomm SD 670 | ||
Qualcomm SD 670 | ||
All of | ||
Qualcomm SD 820 Firmware | ||
Qualcomm Snapdragon 820 | ||
All of | ||
Qualcomm SD821 Firmware | ||
Qualcomm SD821 Firmware | ||
All of | ||
Qualcomm Snapdragon 835 | ||
Qualcomm Snapdragon 835 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-11816 has a high severity level due to the potential for remote code execution vulnerabilities.
To fix CVE-2018-11816, ensure your device's firmware is updated to the latest version provided by the manufacturer.
CVE-2018-11816 affects various versions of Android and specific Qualcomm firmware products.
Yes, CVE-2018-11816 can potentially be exploited remotely if the conditions are met.
The impact of CVE-2018-11816 includes the possibility of arbitrary code execution which can lead to further compromise of the affected system.