Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-2301


Possibility of out-of-bound read if id received from SPI is not in range of FIFO in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ8064, MSM8909W, MSM8996AU, QCA9980, QCS605, Qualcomm 215, SD 425, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 712 / SD 710 / SD 670, SD 820A, SD 845 / SD 850, SD 855, SDM439, SDM660, SDX24


Published

2019-07-25T17:15:13.177

Last Modified

2024-11-21T04:40:39.297

Status

Modified

Source

[email protected]

Severity

CVSSv3.0: 7.8 (HIGH)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qualcomm ipq4019_firmware - Yes
Hardware qualcomm ipq4019 - No
Operating System qualcomm ipq8064_firmware - Yes
Hardware qualcomm ipq8064 - No
Operating System qualcomm msm8909w_firmware - Yes
Hardware qualcomm msm8909w - No
Operating System qualcomm msm8996au_firmware - Yes
Hardware qualcomm msm8996au - No
Operating System qualcomm qca9980_firmware - Yes
Hardware qualcomm qca9980 - No
Operating System qualcomm qcs605_firmware - Yes
Hardware qualcomm qcs605 - No
Operating System qualcomm qualcomm_215_firmware - Yes
Hardware qualcomm qualcomm_215 - No
Operating System qualcomm sd_425_firmware - Yes
Hardware qualcomm sd_425 - No
Operating System qualcomm sd_439_firmware - Yes
Hardware qualcomm sd_439 - No
Operating System qualcomm sd_429_firmware - Yes
Hardware qualcomm sd_429 - No
Operating System qualcomm sd_450_firmware - Yes
Hardware qualcomm sd_450 - No
Operating System qualcomm sd_625_firmware - Yes
Hardware qualcomm sd_625 - No
Operating System qualcomm sd_632_firmware - Yes
Hardware qualcomm sd_632 - No
Operating System qualcomm sd_636_firmware - Yes
Hardware qualcomm sd_636 - No
Operating System qualcomm sd_712_firmware - Yes
Hardware qualcomm sd_712 - No
Operating System qualcomm sd_710_firmware - Yes
Hardware qualcomm sd_710 - No
Operating System qualcomm sd_670_firmware - Yes
Hardware qualcomm sd_670 - No
Operating System qualcomm sd_820a_firmware - Yes
Hardware qualcomm sd_820a - No
Operating System qualcomm sd_845_firmware - Yes
Hardware qualcomm sd_845 - No
Operating System qualcomm sd_850_firmware - Yes
Hardware qualcomm sd_850 - No
Operating System qualcomm sd_855_firmware - Yes
Hardware qualcomm sd_855 - No
Operating System qualcomm sdm439_firmware - Yes
Hardware qualcomm sdm439 - No
Operating System qualcomm sdm660_firmware - Yes
Hardware qualcomm sdm660 - No
Operating System qualcomm sdx24_firmware - Yes
Hardware qualcomm sdx24 - No

References