ZeroHour

CVE-2019-14023

CVSS 3.1
7.8 high
EPSS
<1%p10
Published
()
Modified
Description

String format issue will occur while processing HLOS data as there is no user input validation to ensure inputs are properly NULL terminated before string copy in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9607, Nicobar, Rennell, SA6155P, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130

Vendors
qualcomm
Products
mdm9607 firmware, nicobar firmware, rennell firmware, sa6155p firmware, sdx55 firmware, sm6150 firmware, sm7150 firmware, sm8150 firmware, sm8250 firmware, sxr2130 firmware
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.