CVE-2018-11866: Integer Overflow
Integer overflow may happen in WLAN when calculating an internal structure size due to lack of validation of the input length in Snapdragon Mobile, Snapdragon Wear in version IPQ8074, MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 835, SD 845, SD 850, SDA660, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, SDM710, SnapdragonHighMed2016.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11866?
CVE-2018-11866 has been classified as a high severity vulnerability due to the potential for integer overflow in the WLAN subsystem.
How do I fix CVE-2018-11866?
To mitigate CVE-2018-11866, you should apply the latest firmware updates provided by Qualcomm for the affected Snapdragon Mobile and Wear products.
Which devices are affected by CVE-2018-11866?
CVE-2018-11866 affects various Qualcomm Snapdragon processors, including models like IPQ8074, MDM9206, MDM9607, and several SD series.
What type of vulnerability is CVE-2018-11866?
CVE-2018-11866 is classified as an integer overflow vulnerability that can occur when calculating internal structure sizes.
Can CVE-2018-11866 lead to denial of service?
Yes, CVE-2018-11866 can potentially lead to denial of service conditions due to improper handling of input lengths.