First published: Mon Feb 25 2019(Updated: )
Improper validation of array index can lead to unauthorized access while processing debugFS in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in version MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS605, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 615/16/SD 415, SD 625, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
qualcomm Snapdragon Auto firmware | ||
qualcomm Snapdragon Auto | ||
qualcomm Snapdragon Consumer internet of things firmware | ||
qualcomm Snapdragon Consumer internet of things | ||
qualcomm Snapdragon Industrial internet of things firmware | ||
qualcomm Snapdragon Industrial internet of things | ||
Qualcomm Snapdragon Internet of Things Firmware | ||
Qualcomm Snapdragon Internet of Things | ||
qualcomm Snapdragon Mobile firmware | ||
qualcomm Snapdragon Mobile | ||
qualcomm Snapdragon Voice \& Music firmware | ||
qualcomm Snapdragon Voice \& Music | ||
Qualcomm MDM9150 firmware | ||
Qualcomm MDM9150 | ||
Qualcomm MDM9206 firmware | ||
Qualcomm MDM9206 | ||
Qualcomm MDM9607 firmware | ||
Qualcomm MDM9607 | ||
qualcomm mdm9640 firmware | ||
qualcomm MDM9640 | ||
Qualcomm MDM9650 firmware | ||
Qualcomm MDM9650 | ||
Qualcomm MSM8909W | ||
Qualcomm MSM8909W | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm QCS605 firmware | ||
Qualcomm QCS605 | ||
qualcomm SD 210 firmware | ||
qualcomm SD 210 | ||
qualcomm SD 212 firmware | ||
qualcomm SD 212 | ||
qualcomm SD 205 firmware | ||
qualcomm SD 205 | ||
qualcomm SD 425 firmware | ||
qualcomm SD 425 | ||
Qualcomm SD 439 firmware | ||
Qualcomm SD 439 | ||
Qualcomm SD 429 firmware | ||
Qualcomm SD 429 | ||
qualcomm sd 615 firmware | ||
qualcomm sd 615 | ||
qualcomm sd 616 firmware | ||
qualcomm sd 616 | ||
qualcomm sd 415 firmware | ||
qualcomm sd 415 | ||
qualcomm SD 625 firmware | ||
qualcomm SD 625 | ||
qualcomm SD 636 firmware | ||
qualcomm SD 636 | ||
qualcomm sd 650 firmware | ||
qualcomm sd 650 | ||
qualcomm sd 652 firmware | ||
qualcomm sd 652 | ||
qualcomm SD 712 firmware | ||
qualcomm SD 712 | ||
qualcomm SD 710 firmware | ||
qualcomm SD 710 | ||
qualcomm SD 670 firmware | ||
qualcomm SD 670 | ||
qualcomm SD 820A firmware | ||
qualcomm SD 820A | ||
qualcomm SD 835 firmware | ||
qualcomm SD 835 | ||
qualcomm SD 845 firmware | ||
qualcomm SD 845 | ||
qualcomm SD 850 firmware | ||
qualcomm SD 850 | ||
qualcomm SD 855 firmware | ||
qualcomm SD 855 | ||
qualcomm SDA660 firmware | ||
qualcomm SDA660 | ||
qualcomm SDM439 firmware | ||
qualcomm SDM439 | ||
qualcomm SDM630 firmware | ||
qualcomm SDM630 | ||
qualcomm SDM660 firmware | ||
qualcomm SDM660 | ||
Qualcomm SDX20 Firmware | ||
Qualcomm SDX20 Firmware | ||
Qualcomm sdx24 firmware | ||
Qualcomm sdx24 |
https://www.codeaurora.org/security-bulletin/2019/02/04/february-2019-code-aurora-security-bulletin
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-13913 is classified as high due to its potential to allow unauthorized access.
To fix CVE-2018-13913, update to the latest firmware version provided by Qualcomm that addresses this vulnerability.
CVE-2018-13913 affects various Qualcomm Snapdragon Auto, Consumer IoT, Industrial IoT, Mobile, Voice & Music, and Wearables devices.
CVE-2018-13913 is an improper validation of array index leading to unauthorized access during debugFS processing.
CVE-2018-13913 was disclosed in February 2019 as part of the Code Aurora security bulletin.