Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2018-5824

EPSS 0.02% · P4
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2018-5824

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
In Qualcomm Android for MSM, Firefox OS for MSM, and QRD Android with all Android releases from CAF using the Linux kernel before security patch level 2018-04-05, while processing HTT_T2H_MSG_TYPE_RX_FLUSH or HTT_T2H_MSG_TYPE_RX_PN_IND messages, a buffer overflow can occur if the tid value obtained from the firmware is out of range.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Android WLAN 权限许可和访问控制漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Android是美国谷歌(Google)公司和开放手持设备联盟(简称OHA)共同开发的一套以Linux为基础的开源操作系统。Qualcomm WLAN driver是其中的一个无线驱动程序。 Android 2018-04-05之前版本中Qualcomm WLAN存在提权漏洞。本地攻击者可通过诱使用户打开特制的文件利用该漏洞获取提升的权限并执行任意代码(缓冲区溢出)。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Qualcomm, Inc.Android for MSM, Firefox OS for MSM, QRD Android All Android releases from CAF using the Linux kernel -

II. Public POCs for CVE-2018-5824

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-5824

Please Login to view more intelligence information

Same Patch Batch · Qualcomm, Inc. · 2018-04-03 · 24 CVEs total

CVE-2018-3566Android WLAN 权限许可和访问控制漏洞
CVE-2018-5828Android QC WLAN 权限许可和访问控制漏洞
CVE-2018-5826Android qcacld-3.0 hdd驱动程序信息泄露漏洞
CVE-2018-5825Android IPA驱动程序权限许可和访问控制漏洞
CVE-2018-5823Android WLAN 权限许可和访问控制漏洞
CVE-2018-5822Android QC WLAN 权限许可和访问控制漏洞
CVE-2018-5821Android modem驱动程序权限许可和访问控制漏洞
CVE-2018-5820Android Modem驱动程序权限许可和访问控制漏洞
CVE-2018-3599Android Qualcomm Core Services 权限许可和访问控制漏洞
CVE-2018-3598Android camera_v2驱动程序信息泄露漏洞
CVE-2018-3596Android WLAN 权限许可和访问控制问题漏洞
CVE-2018-3584Android rmnet_usb 信息泄露漏洞
CVE-2017-11075Android Audio DSP驱动程序权限许可和访问控制漏洞
CVE-2018-3563Android Audio Driver 权限许可和访问控制漏洞
CVE-2017-18147Android Closed-source组件输入验证漏洞
CVE-2017-17770Android Binder 安全漏洞
CVE-2017-15853Android WLAN 信息泄露漏洞
CVE-2017-15837Android NL80211驱动程序信息泄露漏洞
CVE-2017-15836Android QC WLAN 权限许可和访问控制漏洞
CVE-2017-15822Android WiFi 缓冲区错误漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2018-5824

No comments yet


Leave a comment