8.8
CVE-2018-19860
- EPSS 0.61%
- Veröffentlicht 07.06.2019 17:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:42
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Broadcom firmware before summer 2014 on Nexus 5 BCM4335C0 2012-12-11, Raspberry Pi 3 BCM43438A1 2014-06-02, and unspecifed other devices does not properly restrict LMP commnds and executes certain memory contents upon receiving an LMP command, as demonstrated by executing an HCI command.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Broadcom ≫ Bcm4335c0 Firmware Version2012-12-11
Broadcom ≫ Bcm43438a1 Firmware Version2014-06-02
Cypress ≫ Cyw20702a1kwfbg Firmware Version-
Cypress ≫ Cyw20702a1kwfbgt Firmware Version-
Cypress ≫ Cyw20702b0kwfbg Firmware Version-
Cypress ≫ Cyw20702b0kwfbgt Firmware Version-
Cypress ≫ Cyw20703ua1kffb1g Firmware Version-
Cypress ≫ Cyw20703ua1kffb1gt Firmware Version-
Cypress ≫ Cyw20704ua1kffb1g Firmware Version-
Cypress ≫ Cyw20704ua1kffb1gt Firmware Version-
Cypress ≫ Cyw20704ua2kffb1g Firmware Version-
Cypress ≫ Cyw20704ua2kffb1gt Firmware Version-
Cypress ≫ Cyw20705a1kwfbgt Firmware Version-
Cypress ≫ Cyw20705b0kwfbg Firmware Version-
Cypress ≫ Cyw20705b0kwfbgt Firmware Version-
Cypress ≫ Cyw20706ua1kffb1g Firmware Version-
Cypress ≫ Cyw20706ua1kffb1gt Firmware Version-
Cypress ≫ Cyw20706ua1kffb4g Firmware Version-
Cypress ≫ Cyw20706ua2kffb4g Firmware Version-
Cypress ≫ Cyw20706ua2kffb4gt Firmware Version-
Cypress ≫ Cyw20707a2kubgt Firmware Version-
Cypress ≫ Cyw20707ua1kffb1g Firmware Version-
Cypress ≫ Cyw20707ua1kffb4g Firmware Version-
Cypress ≫ Cyw20707ua1kffb4gt Firmware Version-
Cypress ≫ Cyw20707ua2kffb4g Firmware Version-
Cypress ≫ Cyw20707ua2kffb4gt Firmware Version-
Cypress ≫ Cyw20707va1pkwbgt Firmware Version-
Cypress ≫ Cyw20707va2pkwbgt Firmware Version-
Cypress ≫ Cyw20730a1kfbg Firmware Version-
Cypress ≫ Cyw20730a1kfbgt Firmware Version-
Cypress ≫ Cyw20730a1kml2g Firmware Version-
Cypress ≫ Cyw20730a1kml2gt Firmware Version-
Cypress ≫ Cyw20730a1kmlg Firmware Version-
Cypress ≫ Cyw20730a1kmlgt Firmware Version-
Cypress ≫ Cyw20730a2kfbg Firmware Version-
Cypress ≫ Cyw20730a2kfbgt Firmware Version-
Cypress ≫ Cyw20730a2kml2g Firmware Version-
Cypress ≫ Cyw20730a2kml2gt Firmware Version-
Cypress ≫ Cyw20733a1kfb1gt Firmware Version-
Cypress ≫ Cyw20733a2kfb1g Firmware Version-
Cypress ≫ Cyw20733a2kfb1gt Firmware Version-
Cypress ≫ Cyw20733a2kml1g Firmware Version-
Cypress ≫ Cyw20733a2kml1gt Firmware Version-
Cypress ≫ Cyw20733a3kfb1g Firmware Version-
Cypress ≫ Cyw20733a3kfb1gt Firmware Version-
Cypress ≫ Cyw20733a3kfb2gt Firmware Version-
Cypress ≫ Cyw20733a3kml1g Firmware Version-
Cypress ≫ Cyw20733a3kml1gt Firmware Version-
Cypress ≫ Cyw20734ua1kffb3g Firmware Version-
Cypress ≫ Cyw20734ua1kffb3gt Firmware Version-
Cypress ≫ Cyw20734ua2kffb3g Firmware Version-
Cypress ≫ Cyw20734ua2kffb3gt Firmware Version-
Cypress ≫ Cyw43438kubgt Firmware Version-
Cypress ≫ Cyw4343w1kubgt Firmware Version-
Cypress ≫ Cyw4343wkubgt Firmware Version-
Cypress ≫ Cyw4343wkwbgt Firmware Version-
Cypress ≫ Cyw4354kkwbgt Firmware Version-
Cypress ≫ Cyw4354xkubgt Firmware Version-
Cypress ≫ Cyw89071a1cubxgt Firmware Version-
Cypress ≫ Cyw89072brfb5g Firmware Version-
Cypress ≫ Cyw89072brfb5gt Firmware Version-
Cypress ≫ Cyw89335l2cubgt Firmware Version-
Cypress ≫ Cyw89335lcubgt Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.61% | 0.688 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 5.8 | 6.5 | 6.4 |
AV:A/AC:L/Au:N/C:P/I:P/A:P
|
CWE-732 Incorrect Permission Assignment for Critical Resource
The product specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.