CVE-2018-11925: Integer Overflow
Data length received from firmware is not validated against the max allowed size which can result in buffer overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ8064, IPQ8074, MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, QCS605, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11925?
CVE-2018-11925 has a severity level that can be categorized as moderate due to the potential for buffer overflow.
How do I fix CVE-2018-11925?
To fix CVE-2018-11925, ensure that the firmware properly validates data length against the maximum allowed size.
Which products are affected by CVE-2018-11925?
CVE-2018-11925 affects various Qualcomm Snapdragon products including IPQ4019, IPQ8064, and several others in the Snapdragon family.
What can happen if CVE-2018-11925 is exploited?
Exploitation of CVE-2018-11925 can lead to a buffer overflow, potentially resulting in system crashes or unauthorized code execution.
Are there any known exploits for CVE-2018-11925?
As of now, there have been no public reports of active exploits specifically targeting CVE-2018-11925.