CVE-2018-13904
Summary
| CVE | CVE-2018-13904 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-02-25 22:29:00 UTC |
| Updated | 2019-02-26 18:14:00 UTC |
| Description | Improper input validation in SCM handler to access storage in TZ can lead to unauthorized access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in versions MDM9206, MDM9607, MDM9650, MDM9655, QCS605, SD 410/12, SD 675, SD 712 / SD 710 / SD 670, SD 8CX, SXR1130. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Mdm9206 | - | All | All | All |
| Hardware | Qualcomm | Mdm9206 | - | All | All | All |
| Operating System | Qualcomm | Mdm9206 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9206 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9607 | - | All | All | All |
| Hardware | Qualcomm | Mdm9607 | - | All | All | All |
| Operating System | Qualcomm | Mdm9607 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9607 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9650 | - | All | All | All |
| Hardware | Qualcomm | Mdm9650 | - | All | All | All |
| Operating System | Qualcomm | Mdm9650 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9650 Firmware | - | All | All | All |
| Hardware | Qualcomm | Mdm9655 | - | All | All | All |
| Hardware | Qualcomm | Mdm9655 | - | All | All | All |
| Operating System | Qualcomm | Mdm9655 Firmware | - | All | All | All |
| Operating System | Qualcomm | Mdm9655 Firmware | - | All | All | All |
| Hardware | Qualcomm | Qcs605 | - | All | All | All |
| Hardware | Qualcomm | Qcs605 | - | All | All | All |
| Operating System | Qualcomm | Qcs605 Firmware | - | All | All | All |
| Operating System | Qualcomm | Qcs605 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 12 | - | All | All | All |
| Hardware | Qualcomm | Sd 12 | - | All | All | All |
| Operating System | Qualcomm | Sd 12 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 12 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 410 | - | All | All | All |
| Hardware | Qualcomm | Sd 410 | - | All | All | All |
| Operating System | Qualcomm | Sd 410 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 410 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 670 | - | All | All | All |
| Hardware | Qualcomm | Sd 670 | - | All | All | All |
| Operating System | Qualcomm | Sd 670 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 670 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 675 | - | All | All | All |
| Hardware | Qualcomm | Sd 675 | - | All | All | All |
| Operating System | Qualcomm | Sd 675 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 675 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 710 | - | All | All | All |
| Hardware | Qualcomm | Sd 710 | - | All | All | All |
| Operating System | Qualcomm | Sd 710 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 710 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 712 | - | All | All | All |
| Hardware | Qualcomm | Sd 712 | - | All | All | All |
| Operating System | Qualcomm | Sd 712 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 712 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 8cx | - | All | All | All |
| Hardware | Qualcomm | Sd 8cx | - | All | All | All |
| Operating System | Qualcomm | Sd 8cx Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 8cx Firmware | - | All | All | All |
| Hardware | Qualcomm | Sxr1130 | - | All | All | All |
| Hardware | Qualcomm | Sxr1130 | - | All | All | All |
| Operating System | Qualcomm | Sxr1130 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sxr1130 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Bulletins | Qualcomm | CONFIRM | www.qualcomm.com | Vendor Advisory |
| Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.