CVE-2018-3589
CVE-2018-3589
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
11 Apr 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In Android before security patch level 2018-04-05 on Qualcomm Snapdragon Mobile MDM9650, MDM9655, SD 835, SD 845, SD 850, the vswr capture size is larger than the maximum size of a diag logPacket, which can lead to a buffer overflow when the sample buffer is copied to the logPacket buffer.
Affected products
Qualcomm, Inc. · Snapdragon MobileWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →