ZeroHour

CVE-2019-2346

CVSS 3.0
7.8 high
EPSS
<1%p11
Published
()
Modified
Description

Firmware is getting into loop of overwriting memory when scan command is given from host because of improper validation. in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ8074, QCA8081, QCS404, QCS405, QCS605, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 820, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660

Vendors
qualcomm
Products
ipq8074 firmware, qca8081 firmware, qcs404 firmware, qcs405 firmware, qcs605 firmware, sd 425 firmware, sd 427 firmware, sd 430 firmware, sd 435 firmware, sd 450 firmware, sd 625 firmware, sd 636 firmware
Weakness
CWE-129
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.