CVE-2018-5917
Summary
| CVE | CVE-2018-5917 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-11-28 15:29:00 UTC |
| Updated | 2018-12-26 14:21:00 UTC |
| Description | Possible buffer overflow in OEM crypto function due to improper input validation in Snapdragon Automobile, Snapdragon Mobile in versions MSM8996AU, SD 425, SD 430, SD 450, SD 625, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDA845, SDX24, SXR1130. |
Risk And Classification
Problem Types: CWE-119
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Msm8996au | - | All | All | All |
| Hardware | Qualcomm | Msm8996au | - | All | All | All |
| Operating System | Qualcomm | Msm8996au Firmware | - | All | All | All |
| Operating System | Qualcomm | Msm8996au Firmware | - | All | All | All |
| Hardware | Qualcomm | Sda660 | - | All | All | All |
| Hardware | Qualcomm | Sda660 | - | All | All | All |
| Operating System | Qualcomm | Sda660 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sda660 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sda845 | - | All | All | All |
| Hardware | Qualcomm | Sda845 | - | All | All | All |
| Operating System | Qualcomm | Sda845 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sda845 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sdx24 | - | All | All | All |
| Hardware | Qualcomm | Sdx24 | - | All | All | All |
| Operating System | Qualcomm | Sdx24 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sdx24 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 425 | - | All | All | All |
| Hardware | Qualcomm | Sd 425 | - | All | All | All |
| Operating System | Qualcomm | Sd 425 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 425 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 430 | - | All | All | All |
| Hardware | Qualcomm | Sd 430 | - | All | All | All |
| Operating System | Qualcomm | Sd 430 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 430 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 450 | - | All | All | All |
| Hardware | Qualcomm | Sd 450 | - | All | All | All |
| Operating System | Qualcomm | Sd 450 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 450 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 625 | - | All | All | All |
| Hardware | Qualcomm | Sd 625 | - | All | All | All |
| Operating System | Qualcomm | Sd 625 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 625 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 820 | - | All | All | All |
| Hardware | Qualcomm | Sd 820 | - | All | All | All |
| Hardware | Qualcomm | Sd 820a | - | All | All | All |
| Hardware | Qualcomm | Sd 820a | - | All | All | All |
| Operating System | Qualcomm | Sd 820a Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820a Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 820 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 835 | - | All | All | All |
| Hardware | Qualcomm | Sd 835 | - | All | All | All |
| Operating System | Qualcomm | Sd 835 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 835 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 845 | - | All | All | All |
| Hardware | Qualcomm | Sd 845 | - | All | All | All |
| Operating System | Qualcomm | Sd 845 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 845 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sd 850 | - | All | All | All |
| Hardware | Qualcomm | Sd 850 | - | All | All | All |
| Operating System | Qualcomm | Sd 850 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sd 850 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sxr1130 | - | All | All | All |
| Hardware | Qualcomm | Sxr1130 | - | All | All | All |
| Operating System | Qualcomm | Sxr1130 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sxr1130 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Qualcomm Closed-Source Components Multiple Unspecified Vulnerabilities | BID | www.securityfocus.com | Third Party Advisory, VDB Entry |
| Bulletins | Qualcomm | CONFIRM | www.qualcomm.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.