Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-14001


Wrong public key usage from existing oem_keystore for hash generation in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8953, MSM8996AU, QM215, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDX20


Published

2020-04-16T11:15:14.213

Last Modified

2024-11-21T04:25:52.127

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-327

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System qualcomm apq8009_firmware - Yes
Hardware qualcomm apq8009 - No
Operating System qualcomm apq8017_firmware - Yes
Hardware qualcomm apq8017 - No
Operating System qualcomm apq8053_firmware - Yes
Hardware qualcomm apq8053 - No
Operating System qualcomm apq8096au_firmware - Yes
Hardware qualcomm apq8096au - No
Operating System qualcomm mdm9206_firmware - Yes
Hardware qualcomm mdm9206 - No
Operating System qualcomm mdm9207c_firmware - Yes
Hardware qualcomm mdm9207c - No
Operating System qualcomm mdm9607_firmware - Yes
Hardware qualcomm mdm9607 - No
Operating System qualcomm mdm9650_firmware - Yes
Hardware qualcomm mdm9650 - No
Operating System qualcomm msm8905_firmware - Yes
Hardware qualcomm msm8905 - No
Operating System qualcomm msm8909w_firmware - Yes
Hardware qualcomm msm8909w - No
Operating System qualcomm msm8917_firmware - Yes
Hardware qualcomm msm8917 - No
Operating System qualcomm msm8953_firmware - Yes
Hardware qualcomm msm8953 - No
Operating System qualcomm msm8996au_firmware - Yes
Hardware qualcomm msm8996au - No
Operating System qualcomm qm215_firmware - Yes
Hardware qualcomm qm215 - No
Operating System qualcomm sdm429_firmware - Yes
Hardware qualcomm sdm429 - No
Operating System qualcomm sdm429w_firmware - Yes
Hardware qualcomm sdm429w - No
Operating System qualcomm sdm439_firmware - Yes
Hardware qualcomm sdm439 - No
Operating System qualcomm sdm450_firmware - Yes
Hardware qualcomm sdm450 - No
Operating System qualcomm sdm630_firmware - Yes
Hardware qualcomm sdm630 - No
Operating System qualcomm sdm632_firmware - Yes
Hardware qualcomm sdm632 - No
Operating System qualcomm sdm636_firmware - Yes
Hardware qualcomm sdm636 - No
Operating System qualcomm sdm660_firmware - Yes
Hardware qualcomm sdm660 - No
Operating System qualcomm sdx20_firmware - Yes
Hardware qualcomm sdx20 - No

References