CVE-2018-5820 is a high-severity integer overflow vulnerability affecting Qualcomm Android, Firefox OS for MSM, and QRD Android devices running Linux kernel versions prior to the 2018-04-05 security patch. The flaw allows an unauthenticated attacker to exploit improper validation of a firmware-supplied parameter, leading to a heap overwrite. This can result in low impact to confidentiality, integrity, and availability. There is no public exploit code, evidence of active exploitation, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.