CVE-2018-11982: Double Free
In Snapdragon (Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 835, SnapdragonHighMed2016, a double free of ASN1 heap memory used for EUTRA CAP container occurs during UTRAN to LTE Capability inquiry procedure.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2018-11982.
What is the severity level of CVE-2018-11982?
The severity level of CVE-2018-11982 is high (8.8).
Which software versions are affected by CVE-2018-11982?
The affected software versions are MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 810, SD 820, SD 835, Snapdragon_High_Med_2016.
What is the Common Weakness Enumeration (CWE) ID for CVE-2018-11982?
The Common Weakness Enumeration (CWE) ID for CVE-2018-11982 is 415.
Where can I find more information about CVE-2018-11982?
You can find more information about CVE-2018-11982 on the Qualcomm Product Security Bulletins page: https://www.qualcomm.com/company/product-security/bulletins.