ZeroHour

CVE-2019-10481

CVSS 3.1
7.8 high
EPSS
<1%p10
Published
()
Modified
Description

Out of bound access occurs while handling the WMI FW event due to lack of check of buffer argument which comes directly from the WLAN FW in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MDM9607, MSM8996AU, QCA6574AU, QCA8081, QCN7605, SDX55, SM6150, SM7150, SM8150

Vendors
qualcomm
Products
apq8096au firmware, ipq4019 firmware, ipq8064 firmware, ipq8074 firmware, mdm9607 firmware, msm8996au firmware, qca6574au firmware, qca8081 firmware, qcn7605 firmware, sdx55 firmware, sm6150 firmware, sm7150 firmware
Weakness
CWE-129
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.