CVE-2018-11264
Summary
| CVE | CVE-2018-11264 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-11-28 15:29:00 UTC |
| Updated | 2018-12-26 14:14:00 UTC |
| Description | Possible buffer overflow in Ontario fingerprint code due to lack of input validation for the parameters coming into TZ from HLOS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SDA660. |
Risk And Classification
Problem Types: CWE-119
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Mdm9206 | - | All | All | All |
| Hardware | Qualcomm | Mdm9206 | - | All | All | All |
| Operating System | Qualcomm | Mdm9206 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9206 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9607 | - | All | All | All |
| Hardware | Qualcomm | Mdm9607 | - | All | All | All |
| Operating System | Qualcomm | Mdm9607 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9607 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9650 | - | All | All | All |
| Hardware | Qualcomm | Mdm9650 | - | All | All | All |
| Operating System | Qualcomm | Mdm9650 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9650 Firmware | - | All | All | All |
| Hardware | Qualcomm | Msm8996au | - | All | All | All |
| Hardware | Qualcomm | Msm8996au | - | All | All | All |
| Operating System | Qualcomm | Msm8996au Firmware | - | All | All | All |
| Operating System | Qualcomm | Msm8996au Firmware | - | All | All | All |
| Hardware | Qualcomm | Sda660 | - | All | All | All |
| Hardware | Qualcomm | Sda660 | - | All | All | All |
| Operating System | Qualcomm | Sda660 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sda660 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 205 | - | All | All | All |
| Hardware | Qualcomm | Sd 205 | - | All | All | All |
| Operating System | Qualcomm | Sd 205 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 205 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 210 | - | All | All | All |
| Hardware | Qualcomm | Sd 210 | - | All | All | All |
| Operating System | Qualcomm | Sd 210 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 210 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 212 | - | All | All | All |
| Hardware | Qualcomm | Sd 212 | - | All | All | All |
| Operating System | Qualcomm | Sd 212 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 212 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 410 | - | All | All | All |
| Hardware | Qualcomm | Sd 410 | - | All | All | All |
| Operating System | Qualcomm | Sd 410 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 410 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 412 | - | All | All | All |
| Hardware | Qualcomm | Sd 412 | - | All | All | All |
| Operating System | Qualcomm | Sd 412 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 412 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 425 | - | All | All | All |
| Hardware | Qualcomm | Sd 425 | - | All | All | All |
| Operating System | Qualcomm | Sd 425 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 425 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 430 | - | All | All | All |
| Hardware | Qualcomm | Sd 430 | - | All | All | All |
| Operating System | Qualcomm | Sd 430 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 430 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 450 | - | All | All | All |
| Hardware | Qualcomm | Sd 450 | - | All | All | All |
| Operating System | Qualcomm | Sd 450 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 450 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 625 | - | All | All | All |
| Hardware | Qualcomm | Sd 625 | - | All | All | All |
| Operating System | Qualcomm | Sd 625 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 625 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 650 | - | All | All | All |
| Hardware | Qualcomm | Sd 650 | - | All | All | All |
| Operating System | Qualcomm | Sd 650 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 650 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 652 | - | All | All | All |
| Hardware | Qualcomm | Sd 652 | - | All | All | All |
| Operating System | Qualcomm | Sd 652 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 652 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 820 | - | All | All | All |
| Hardware | Qualcomm | Sd 820 | - | All | All | All |
| Hardware | Qualcomm | Sd 820a | - | All | All | All |
| Hardware | Qualcomm | Sd 820a | - | All | All | All |
| Operating System | Qualcomm | Sd 820a Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820a Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 835 | - | All | All | All |
| Hardware | Qualcomm | Sd 835 | - | All | All | All |
| Operating System | Qualcomm | Sd 835 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 835 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| Bulletins | Qualcomm | CONFIRM | www.qualcomm.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.