CVE-2018-13885: Infoleak
Possible memory overread may be lead to access of sensitive data in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9650, MDM9655, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 835, SD 845 / SD 850, SDA660, SDM439, SDM630, SDM660, SDX20, SM7150, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-13885?
CVE-2018-13885 is classified with a moderate severity level due to potential memory overreads leading to sensitive data access.
How do I fix CVE-2018-13885?
To mitigate CVE-2018-13885, ensure that your device firmware is updated to a version that includes the security patches released by Qualcomm.
Which devices are affected by CVE-2018-13885?
CVE-2018-13885 affects various Snapdragon chipsets including MDM9150, MDM9206, MDM9607, MDM9615, and others.
Is CVE-2018-13885 exploitable remotely?
CVE-2018-13885 does not specifically indicate remote exploitability but may allow for local attacker access to sensitive data.
What types of data may be exposed due to CVE-2018-13885?
Exploitation of CVE-2018-13885 may lead to the exposure of sensitive data stored in memory.