La mancanza di validazione dell’input prima di copiare può portare a un buffer su letto in funzione WLAN in Snapdragon Auto, Snapdragon Compute, Snapdragon IOT dei consumatori, Snapdragon industriale IOT, Snapdragon Mobile di MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6574AU, QCS605, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24, SM7150 |
https://www.codeaurora.org/security-bulletin/2019/04/01/april-2019-code-aurora-security-bulletin https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-11937 |
Vulnerabilità: CVE-2018-11937
