7.8
CVSSv3

CVE-2018-13914

Published: 25/02/2019 Updated: 26/02/2019
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Lack of input validation for data received from user space can lead to an out of bound array issue in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in version MDM9150, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 636, SD 820A, SD 835, SDM630, SDM660, SDX20.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm snapdragon_auto_firmware -

qualcomm snapdragon_consumer_internet_of_things_firmware -

qualcomm snapdragon_industrial_internet_of_things_firmware -

qualcomm mdm9150_firmware -

qualcomm mdm9206_firmware -

qualcomm mdm9607_firmware -

qualcomm mdm9650_firmware -

qualcomm msm8909w_firmware -

qualcomm msm8996au_firmware -

qualcomm sd_210_firmware -

qualcomm sd_212_firmware -

qualcomm sd_205_firmware -

qualcomm sd_636_firmware -

qualcomm sd_820a_firmware -

qualcomm sd_835_firmware -

qualcomm sdm630_firmware -

qualcomm sdm660_firmware -

qualcomm sdx20_firmware -