CVE-2018-5914: Out-of-bounds Read
Improper input validation in TZ led to array out of bound in TZ function while accessing the peripheral details using the incoming data in Snapdragon Mobile, Snapdragon Wear version MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 835, SDA660.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-5914?
CVE-2018-5914 has been classified with a medium severity level due to the potential for array out of bounds access.
How do I fix CVE-2018-5914?
To fix CVE-2018-5914, ensure that you update the affected firmware and software versions as provided by Qualcomm.
What systems are affected by CVE-2018-5914?
CVE-2018-5914 affects various Snapdragon Mobile and Snapdragon Wear versions, including MDM9206, MDM9607, and others.
What is the impact of CVE-2018-5914 on devices?
The impact of CVE-2018-5914 may lead to potential denial-of-service conditions due to improper input validation.
Is there a workaround for CVE-2018-5914?
Currently, there are no known effective workarounds for CVE-2018-5914 besides applying the necessary updates.