VDB

CVE-2018-13888

CVE-2018-13888 PUBLISHED CVSS 7.800000190734863 HIGH

There is potential for memory corruption in the RIL daemon due to de reference of memory outside the allocated array length in RIL in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in versions MDM9206, MDM9607, MDM9635M, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 636, SD 650/52, SD 675, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDM439, SDM630, SDM660, ZZ_QCS605.

EPSS 0.04% · 12.0th percentile

Risk Scores

CVSS 3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.04%
12.0th percentile

Affected Products

VendorProductVersions
qualcommsd_835_firmware
qualcommsd_425_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon WearablesMDM9206, MDM9607, MDM9635M, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 636, SD 650/52, SD 675, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDM439, SDM630, SDM660, ZZ_QCS605
qualcommsd_427_firmware
qualcommsd_205_firmware
qualcommmdm9635m_firmware
qualcommsd_675_firmware
qualcommmdm9650_firmware
qualcommmdm9206_firmware
qualcommsd_650_firmware
qualcommmdm9607_firmware
qualcommsd_850_firmware
qualcommsd_212_firmware
qualcommsd_652_firmware
qualcommsd_820a_firmware
qualcommsdm660_firmware
qualcommsd_712_firmware
qualcommsd_845_firmware
qualcommsd_430_firmware
qualcommsd_435_firmware

…and 13 more

Timeline

  • Jan 7, 2019 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›