10

CVE-2019-2249

Kernel can do a memory read from arbitrary address passed by user during execution of a syscall in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ8074, MDM9205, MDM9650, QCA8081, QCS605, SD 427, SD 435, SD 450, SD 625, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660, SDX20, Snapdragon_High_Med_2016, SXR1130

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommIpq8074 Firmware Version-
   QualcommIpq8074 Version-
QualcommMdm9205 Firmware Version-
   QualcommMdm9205 Version-
QualcommMdm9650 Firmware Version-
   QualcommMdm9650 Version-
QualcommQca8081 Firmware Version-
   QualcommQca8081 Version-
QualcommQcs605 Firmware Version-
   QualcommQcs605 Version-
QualcommSd 427 Firmware Version-
   QualcommSd 427 Version-
QualcommSd 435 Firmware Version-
   QualcommSd 435 Version-
QualcommSd 450 Firmware Version-
   QualcommSd 450 Version-
QualcommSd 625 Firmware Version-
   QualcommSd 625 Version-
QualcommSd 636 Firmware Version-
   QualcommSd 636 Version-
QualcommSd 665 Firmware Version-
   QualcommSd 665 Version-
QualcommSd 675 Firmware Version-
   QualcommSd 675 Version-
QualcommSd 712 Firmware Version-
   QualcommSd 712 Version-
QualcommSd 710 Firmware Version-
   QualcommSd 710 Version-
QualcommSd 670 Firmware Version-
   QualcommSd 670 Version-
QualcommSd 730 Firmware Version-
   QualcommSd 730 Version-
QualcommSd 835 Firmware Version-
   QualcommSd 835 Version-
QualcommSd 845 Firmware Version-
   QualcommSd 845 Version-
QualcommSd 850 Firmware Version-
   QualcommSd 850 Version-
QualcommSd 855 Firmware Version-
   QualcommSd 855 Version-
QualcommSd 8cx Firmware Version-
   QualcommSd 8cx Version-
QualcommSda660 Firmware Version-
   QualcommSda660 Version-
QualcommSdm630 Firmware Version-
   QualcommSdm630 Version-
QualcommSdm660 Firmware Version-
   QualcommSdm660 Version-
QualcommSdx20 Firmware Version-
   QualcommSdx20 Version-
QualcommSxr1130 Firmware Version-
   QualcommSxr1130 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.48% 0.624
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.