Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-10589


Lack of length check of response buffer can lead to buffer over-flow while GP command response buffer handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8098, MDM9206, MDM9607, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, QM215, SDA660, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660


Published

2020-04-16T11:15:13.277

Last Modified

2024-11-21T04:19:31.300

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: COMPLETE
  • Integrity Impact: COMPLETE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

10.0

Weaknesses
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qualcomm apq8017_firmware - Yes
Hardware qualcomm apq8017 - No
Operating System qualcomm apq8053_firmware - Yes
Hardware qualcomm apq8053 - No
Operating System qualcomm apq8098_firmware - Yes
Hardware qualcomm apq8098 - No
Operating System qualcomm mdm9206_firmware - Yes
Hardware qualcomm mdm9206 - No
Operating System qualcomm mdm9607_firmware - Yes
Hardware qualcomm mdm9607 - No
Operating System qualcomm msm8917_firmware - Yes
Hardware qualcomm msm8917 - No
Operating System qualcomm msm8920_firmware - Yes
Hardware qualcomm msm8920 - No
Operating System qualcomm msm8937_firmware - Yes
Hardware qualcomm msm8937 - No
Operating System qualcomm msm8940_firmware - Yes
Hardware qualcomm msm8940 - No
Operating System qualcomm msm8953_firmware - Yes
Hardware qualcomm msm8953 - No
Operating System qualcomm msm8998_firmware - Yes
Hardware qualcomm msm8998 - No
Operating System qualcomm qm215_firmware - Yes
Hardware qualcomm qm215 - No
Operating System qualcomm sda660_firmware - Yes
Hardware qualcomm sda660 - No
Operating System qualcomm sdm429_firmware - Yes
Hardware qualcomm sdm429 - No
Operating System qualcomm sdm439_firmware - Yes
Hardware qualcomm sdm439 - No
Operating System qualcomm sdm450_firmware - Yes
Hardware qualcomm sdm450 - No
Operating System qualcomm sdm630_firmware - Yes
Hardware qualcomm sdm630 - No
Operating System qualcomm sdm632_firmware - Yes
Hardware qualcomm sdm632 - No
Operating System qualcomm sdm636_firmware - Yes
Hardware qualcomm sdm636 - No
Operating System qualcomm sdm660_firmware - Yes
Hardware qualcomm sdm660 - No

References