CVE-2018-11888: High severity Google Android vulnerability
Unauthorized access may be allowed by the SCP11 Crypto Services TA will processing commands from other TA in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile and Snapdragon Voice & Music in versions MDM9607, MDM9650, MDM9655, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 650/52, SD 820, SD 820A, SD 835, SD 8CX, SDM439, SnapdragonHighMed2016.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11888?
CVE-2018-11888 has been assigned a high severity rating due to the potential for unauthorized access.
How do I fix CVE-2018-11888?
To fix CVE-2018-11888, ensure that your affected Qualcomm firmware is updated to a patched version provided by the vendor.
What systems are affected by CVE-2018-11888?
CVE-2018-11888 affects various Qualcomm Snapdragon platform firmware including MDM9607, MDM9650, and many others.
What is the impact of CVE-2018-11888?
The impact of CVE-2018-11888 includes potential unauthorized access through the SCP11 Crypto Services TA when processing commands.
Is CVE-2018-11888 being actively exploited?
As of the latest reports, there have been no confirmed active exploits for CVE-2018-11888, but it poses a significant security risk.