60
CVE-2019-2276
—CVSS 3.0
9.8 critical
EPSS
<1%p59
Published
()
Modified
Description
Possible out of bound read occurs while processing beaconing request due to lack of check on action frames received from user controlled space in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9607, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCS405, QCS605, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820A, SD 845 / SD 850, SD 855, SDM630, SDM660, SDX24
- Vendors
- qualcomm
- Products
- mdm9607 firmware, msm8996au firmware, qca6174a firmware, qca6574au firmware, qca9377 firmware, qca9379 firmware, qcs405 firmware, qcs605 firmware, sd 636 firmware, sd 665 firmware, sd 675 firmware, sd 712 firmware
- Weakness
- CWE-125
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H