CVE-2018-5892: Infoleak
The Touch Pal application can collect user behavior data without awareness by the user in Snapdragon Mobile and Snapdragon Wear.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-5892?
CVE-2018-5892 is classified as a high-severity vulnerability due to its potential for extensive user data collection without consent.
How do I fix CVE-2018-5892?
To fix CVE-2018-5892, users should ensure their Snapdragon devices are updated with the latest firmware provided by Qualcomm.
What should users do if they are affected by CVE-2018-5892?
Affected users should monitor their device behavior and consider updating their applications, particularly Touch Pal, to mitigate risks.
Which devices are affected by CVE-2018-5892?
CVE-2018-5892 affects devices using Qualcomm's Snapdragon processors, including various models like the MDM9206, MDM9607, and others.
Is user awareness a factor in CVE-2018-5892?
Yes, CVE-2018-5892 specifically relates to the application collecting user behavior data without user awareness.