CVE-2018-12012: Buffer Overflow
While updating blacklisting region shared buffered memory region is not validated against newly updated black list, causing boot-up to be compromised in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9206, MDM9607, MDM9650, MDM9655, QCS605, SD 210/SD 212/SD 205, SD 410/12, SD 615/16/SD 415, SD 712 / SD 710 / SD 670, SD 835, SD 845 / SD 850, SD 8CX, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-12012 vulnerability?
CVE-2018-12012 vulnerability is a security flaw that allows an attacker to compromise the boot-up process in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon M...
How severe is CVE-2018-12012 vulnerability?
CVE-2018-12012 vulnerability has a severity value of 7.8 (high).
Which software versions are affected by CVE-2018-12012 vulnerability?
Qualcomm Mdm9206 Firmware, Qualcomm Mdm9650 Firmware, Qualcomm Mdm9655 Firmware, Qualcomm Qcs605 Firmware, Qualcomm Sd 210 Firmware, Qualcomm Sd 212 Firmware, Qualcomm Sd 205 Firmware, Qualcomm Sd 410 Firmware, Qualcomm Sd 412 Firmware, Qualcomm Sd 616 Firmware...
How can I fix CVE-2018-12012 vulnerability?
To fix CVE-2018-12012 vulnerability, it is recommended to apply the security patches provided by Qualcomm and follow their guidelines.
Where can I find more information about CVE-2018-12012 vulnerability?
You can find more information about CVE-2018-12012 vulnerability on the Android Security Bulletin from April 2019 and the Qualcomm Product Security Bulletins.