First published: Tue Sep 04 2018(Updated: )
Improper access control in core module lead XBL_LOADER performs the ZI region clear for QTEE instead of XBL_SEC in Snapdragon Mobile in version SD 845, SD 850.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm Sd 845 Firmware | ||
Qualcomm Sd 845 | ||
Qualcomm Sd 850 Firmware | ||
Qualcomm Sd 850 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-11951 has a moderate severity rating due to improper access control in the core module.
To mitigate CVE-2018-11951, ensure that your firmware for Qualcomm SD 845 and SD 850 is updated to the latest version.
CVE-2018-11951 affects Qualcomm SD 845 and SD 850 devices, specifically those running certain firmware versions.
CVE-2018-11951 is an improper access control vulnerability related to the ZI region clear function in Snapdragon Mobile.
The vendor for CVE-2018-11951 is Qualcomm, which provides the affected firmware for Snapdragon processors.