CVE-2018-11267
20.09.2018, 13:29
In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9615, MDM9640, MDM9650, MDM9655, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 450, SD 600, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDM429, SDM439, SDM630, SDM632, SDM636, SDM660, SDX20, Snapdragon_High_Med_2016, when sending an malformed XML data to deviceprogrammer/firehose it may do an out of bounds buffer write allowing a region of memory to be filled with 0x20.Enginsight
Vendor | Product | Version |
---|---|---|
qualcomm | mdm9206_firmware | - |
qualcomm | mdm9607_firmware | - |
qualcomm | mdm9615_firmware | - |
qualcomm | mdm9640_firmware | - |
qualcomm | mdm9650_firmware | - |
qualcomm | mdm9655_firmware | - |
qualcomm | msm8996au_firmware | - |
qualcomm | sd210_firmware | - |
qualcomm | sd212_firmware | - |
qualcomm | sd205_firmware | - |
qualcomm | sd410_firmware | - |
qualcomm | sd412_firmware | - |
qualcomm | sd425_firmware | - |
qualcomm | sd427_firmware | - |
qualcomm | sd430_firmware | - |
qualcomm | sd435_firmware | - |
qualcomm | sd450_firmware | - |
qualcomm | sd600_firmware | - |
qualcomm | sd615_firmware | - |
qualcomm | sd616_firmware | - |
qualcomm | sd415_firmware | - |
qualcomm | sd617_firmware | - |
qualcomm | sd625_firmware | - |
qualcomm | sd650_firmware | - |
qualcomm | sd652_firmware | - |
qualcomm | sd820_firmware | - |
qualcomm | sd820a_firmware | - |
qualcomm | sd835_firmware | - |
qualcomm | sd845_firmware | - |
qualcomm | sd850_firmware | - |
qualcomm | sda660_firmware | - |
qualcomm | sdm429_firmware | - |
qualcomm | sdm439_firmware | - |
qualcomm | sdm630_firmware | - |
qualcomm | sdm632_firmware | - |
qualcomm | sdm636_firmware | - |
qualcomm | sdm660_firmware | - |
qualcomm | sdx20_firmware | - |
qualcomm | snapdragon_high_med_2016_firmware | - |
𝑥
= Vulnerable software versions