CVE-2018-11923: Buffer Overflow
Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6574AU, QCS605, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11923?
CVE-2018-11923 has a significant severity due to the potential for integer overflow and buffer overflow exploits.
How do I fix CVE-2018-11923?
The fix for CVE-2018-11923 involves updating the firmware of affected Qualcomm devices to the latest version that addresses this vulnerability.
What systems are affected by CVE-2018-11923?
CVE-2018-11923 affects several Qualcomm Snapdragon chips including MDM9150, MDM9206, MDM9607, and others across different platforms.
What type of vulnerability is CVE-2018-11923?
CVE-2018-11923 is categorized as a buffer overflow vulnerability due to improper buffer length checks.
Is CVE-2018-11923 remotely exploitable?
Yes, CVE-2018-11923 is potentially exploitable remotely in specific conditions related to the affected Snapdragon hardware.