CVE-2018-13898: Critical severity android vulnerability
Out-of-Bounds write due to incorrect array index check in PMIC in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9150, MDM9206, MDM9607, MDM9650, MDM9655, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, SDX24, SnapdragonHighMed2016, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-13898?
CVE-2018-13898 is categorized as a high severity vulnerability due to its potential for an out-of-bounds write exploit.
How do I fix CVE-2018-13898?
To fix CVE-2018-13898, it is essential to update the affected Snapdragon platforms with the latest firmware patches provided by Qualcomm.
Which devices are affected by CVE-2018-13898?
CVE-2018-13898 affects multiple Snapdragon devices, including models like MDM9150, MDM9206, and QCS405 among others.
What type of vulnerability is CVE-2018-13898?
CVE-2018-13898 is classified as an out-of-bounds write vulnerability caused by improper array index validation in certain Snapdragon components.
Can exploitation of CVE-2018-13898 lead to system tampering?
Yes, exploitation of CVE-2018-13898 could allow an attacker to tamper with the system and potentially execute arbitrary code.