← Zuruck zu CVEs
CVE-2019-2318
MEDIUM5.5
Beschreibung
Non Secure Kernel can cause Trustzone to do an arbitrary memory read which will result into DOS in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8096, APQ8096AU, IPQ8074, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, QCA8081, QM215, SDM429, SDM439, SDM450, SDM632, Snapdragon_High_Med_2016
CVE Details
CVSS v3.1 Bewertung5.5
SchweregradMEDIUM
CVSS VektorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
AngriffsvektorLOCAL
KomplexitatLOW
Erforderliche PrivilegienLOW
BenutzerinteraktionNONE
Veroffentlicht11/21/2019
Zuletzt geandert11/21/2024
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
qualcomm:apq8017qualcomm:apq8017_firmwarequalcomm:apq8053qualcomm:apq8053_firmwarequalcomm:apq8096qualcomm:apq8096_firmwarequalcomm:apq8096auqualcomm:apq8096au_firmwarequalcomm:ipq8074qualcomm:ipq8074_firmwarequalcomm:msm8917qualcomm:msm8917_firmwarequalcomm:msm8920qualcomm:msm8920_firmwarequalcomm:msm8937qualcomm:msm8937_firmwarequalcomm:msm8940qualcomm:msm8940_firmwarequalcomm:msm8953qualcomm:msm8953_firmwarequalcomm:msm8996qualcomm:msm8996_firmwarequalcomm:msm8996auqualcomm:msm8996au_firmwarequalcomm:qca8081qualcomm:qca8081_firmwarequalcomm:qm215qualcomm:qm215_firmwarequalcomm:sdm429qualcomm:sdm429_firmwarequalcomm:sdm439qualcomm:sdm439_firmwarequalcomm:sdm450qualcomm:sdm450_firmwarequalcomm:sdm632qualcomm:sdm632_firmwarequalcomm:snapdragon_high_med_2016qualcomm:snapdragon_high_med_2016_firmware
Schwachen (CWE)
CWE-125
Referenzen
https://www.qualcomm.com/company/product-security/bulletins/october-2019-bulletin(product-security@qualcomm.com)
https://www.qualcomm.com/company/product-security/bulletins/october-2019-bulletin(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.