CVE-2018-13910: Input Validation
Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ8074, MDM9206, MDM9607, MDM9650, MDM9655, MSM8996AU, QCA8081, Qualcomm 215, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 650/52, SD 820, SD 820A, SDM439, SnapdragonHighMed2016
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-13910?
CVE-2018-13910 is a vulnerability that allows out-of-bounds access in TZ due to an invalid index calculated to check against DDR in various Qualcomm Snapdragon products.
Which software products are affected by CVE-2018-13910?
CVE-2018-13910 affects Google Android, Qualcomm Ipq8074 Firmware, and Qualcomm Mdm9206 Firmware.
What is the severity of CVE-2018-13910?
CVE-2018-13910 has a severity level of high.
How can I fix CVE-2018-13910?
To fix CVE-2018-13910, it is recommended to apply the patches and updates provided by the vendors.
Where can I find more information about CVE-2018-13910?
More information about CVE-2018-13910 can be found on the Qualcomm Product Security Bulletins and the Android Security Bulletins websites.