CVE-2018-11827
CVE-2018-11827
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 0.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
18 Sep 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper validation of array index in WMA roam synchronization handler can lead to OOB write.
Affected products
Qualcomm, Inc. · Android for MSM, Firefox OS for MSM, QRD Android