CVE-2018-11828

HIGH

Qualcomm Snapdragon Mobile - Infinite Loop via Constant ADC Values

Title source: llm
STIX 2.1

Description

When FW tries to get random mac address generated from new SW RNG and ADC values read are constant then DUT get struck in loop while trying to get random ADC samples in Snapdragon Mobile in version SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/107681

Scores

CVSS v3 7.5
EPSS 0.0024
EPSS Percentile 46.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-400
Status published
Products (9)
qualcomm/sd_205_firmware
qualcomm/sd_210_firmware
qualcomm/sd_212_firmware
qualcomm/sd_425_firmware
qualcomm/sd_430_firmware
qualcomm/sd_450_firmware
qualcomm/sd_625_firmware
qualcomm/sd_650_firmware
qualcomm/sd_652_firmware
Published Oct 26, 2018
Tracked Since Feb 18, 2026