CVE-2018-11928: Buffer Overflow
Lack of check on length parameter may cause buffer overflow while processing WMI commands in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ8074, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9886, QCS605, SD 210/SD 212/SD 205, SD 425, SD 600, SD 625, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660, SDX20, SDX24, SM7150, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-11928?
CVE-2018-11928 has a high severity rating due to the potential for a buffer overflow in vulnerable Qualcomm products.
How do I fix CVE-2018-11928?
To mitigate CVE-2018-11928, users should apply the latest firmware updates provided by Qualcomm for affected devices.
Which devices are affected by CVE-2018-11928?
CVE-2018-11928 impacts various Qualcomm Snapdragon products, including those used in automotive, consumer electronics, and mobile devices.
Is CVE-2018-11928 remotely exploitable?
CVE-2018-11928 can potentially be exploited remotely if a device processes malicious WMI commands.
What could happen if CVE-2018-11928 is exploited?
Exploitation of CVE-2018-11928 could lead to arbitrary code execution due to the buffer overflow vulnerability.