First published: Mon Feb 04 2019(Updated: )
Improperly configured memory protection allows read/write access to modem image from HLOS kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in versions MDM9150, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9650, MDM9655, MSM8996AU, QCS605, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660, SDX20, SXR1130.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Qualcomm Snapdragon Auto Firmware | ||
Qualcomm Snapdragon Auto | ||
Qualcomm Snapdragon Compute Firmware | ||
Qualcomm Snapdragon Compute | ||
Qualcomm Snapdragon Consumer Internet Of Things Firmware | ||
Qualcomm Snapdragon Consumer Internet Of Things | ||
Qualcomm Snapdragon Industrial Internet Of Things Firmware | ||
Qualcomm Snapdragon Industrial Internet Of Things | ||
Qualcomm Mdm9150 Firmware | ||
Qualcomm Mdm9150 | ||
Qualcomm Mdm9615 Firmware | ||
Qualcomm Mdm9615 | ||
Qualcomm Mdm9625 Firmware | ||
Qualcomm Mdm9625 | ||
Qualcomm Mdm9635m Firmware | ||
Qualcomm Mdm9635m | ||
Qualcomm Mdm9640 Firmware | ||
Qualcomm Mdm9640 | ||
Qualcomm Mdm9650 Firmware | ||
Qualcomm Mdm9650 | ||
Qualcomm Mdm9655 Firmware | ||
Qualcomm Mdm9655 | ||
Qualcomm Msm8996au Firmware | ||
Qualcomm Msm8996au | ||
Qualcomm Qcs605 Firmware | ||
Qualcomm Qcs605 | ||
Qualcomm Sd 636 Firmware | ||
Qualcomm Sd 636 | ||
Qualcomm Sd 675 Firmware | ||
Qualcomm Sd 675 | ||
Qualcomm Sd 712 Firmware | ||
Qualcomm Sd 712 | ||
Qualcomm Sd 710 Firmware | ||
Qualcomm Sd 710 | ||
Qualcomm Sd 670 Firmware | ||
Qualcomm Sd 670 | ||
Qualcomm Sd 820 Firmware | ||
Qualcomm Sd 820 | ||
Qualcomm Sd 820a Firmware | ||
Qualcomm Sd 820a | ||
Qualcomm Sd 835 Firmware | ||
Qualcomm Sd 835 | ||
Qualcomm Sd 845 Firmware | ||
Qualcomm Sd 845 | ||
Qualcomm Sd 850 Firmware | ||
Qualcomm Sd 850 | ||
Qualcomm Sd 855 Firmware | ||
Qualcomm Sd 855 | ||
Qualcomm Sd 8cx Firmware | ||
Qualcomm Sd 8cx | ||
Qualcomm Sda660 Firmware | ||
Qualcomm Sda660 | ||
Qualcomm Sdm630 Firmware | ||
Qualcomm Sdm630 | ||
Qualcomm Sdm660 Firmware | ||
Qualcomm Sdm660 | ||
Qualcomm Sdx20 Firmware | ||
Qualcomm Sdx20 | ||
Qualcomm Sxr1130 Firmware | ||
Qualcomm Sxr1130 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-5839 is a vulnerability that allows improper read/write access to the modem image from the HLOS kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in various versions.
CVE-2018-5839 affects Google Android, Qualcomm Snapdragon Auto Firmware, Qualcomm Snapdragon Compute Firmware, Qualcomm Snapdragon Consumer Internet Of Things Firmware, Qualcomm Snapdragon Industrial Internet Of Things Firmware, Qualcomm Mdm9150 Firmware, Qualcomm Mdm9615 Firmware, Qualcomm Mdm9625 Firmware, Qualcomm Mdm9635m Firmware, Qualcomm Mdm9640 Firmware, Qualcomm Mdm9650 Firmware, Qualcomm Mdm9655 Firmware, Qualcomm Msm8996au Firmware, Qualcomm Qcs605 Firmware.
CVE-2018-5839 has a severity rating of 'high' with a severity value of 7.
To fix CVE-2018-5839, ensure that you apply the necessary patches or updates provided by the respective vendors and follow the recommendations outlined in the security bulletin.
You can find more information about CVE-2018-5839 on the Android Security Bulletin page and the SecurityFocus website.