TROYANOSYVIRUS
Back to CVEs

CVE-2019-10563

HIGH
7.8

Description

Buffer over-read can occur in fast message handler due to improper input validation while processing a message from firmware in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8053, APQ8096AU, MSM8996AU, MSM8998, QCN7605, QCS405, QCS605, SDA660, SDM636, SDM660, SDX20, SDX24

CVE Details

CVSS v3.1 Score7.8
SeverityHIGH
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack VectorLOCAL
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published11/21/2019
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

qualcomm:apq8053qualcomm:apq8053_firmwarequalcomm:apq8096auqualcomm:apq8096au_firmwarequalcomm:msm8996auqualcomm:msm8996au_firmwarequalcomm:msm8998qualcomm:msm8998_firmwarequalcomm:qcn7605qualcomm:qcn7605_firmwarequalcomm:qcs405qualcomm:qcs405_firmwarequalcomm:qcs605qualcomm:qcs605_firmwarequalcomm:sda660qualcomm:sda660_firmwarequalcomm:sdm636qualcomm:sdm636_firmwarequalcomm:sdm660qualcomm:sdm660_firmwarequalcomm:sdx20qualcomm:sdx20_firmwarequalcomm:sdx24qualcomm:sdx24_firmware

Weaknesses (CWE)

CWE-20CWE-125

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.