PT-2018-3420 · Qualcomm+1 · Sdx20+29

Publicado

2018-05-04

·

Atualizado

2019-12-23

·

CVE-2019-10557

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Linux kernel versions (affected versions not specified) Qualcomm Snapdragon Auto versions (affected versions not specified) Qualcomm Snapdragon Consumer Electronics Connectivity versions (affected versions not specified) Qualcomm Snapdragon Consumer IOT versions (affected versions not specified) Qualcomm Snapdragon Industrial IOT versions (affected versions not specified) Qualcomm Snapdragon Mobile versions (affected versions not specified) Qualcomm Snapdragon Voice & Music versions (affected versions not specified) APQ8009 (affected versions not specified) APQ8017 (affected versions not specified) APQ8053 (affected versions not specified) APQ8096AU (affected versions not specified) MDM9206 (affected versions not specified) MDM9207C (affected versions not specified) MDM9607 (affected versions not specified) MDM9650 (affected versions not specified) MSM8996AU (affected versions not specified) QCA6174A (affected versions not specified) QCA6574AU (affected versions not specified) QCA9377 (affected versions not specified) QCA9379 (affected versions not specified) QCN7605 (affected versions not specified) QCS605 (affected versions not specified) SDA660 (affected versions not specified) SDA845 (affected versions not specified) SDM630 (affected versions not specified) SDM636 (affected versions not specified) SDM660 (affected versions not specified) SDX20 (affected versions not specified) SDX55 (affected versions not specified) SXR1130 (affected versions not specified)
Description: The issue is related to a lack of buffer length check and out-of-bounds read in the wireless driver of the Linux kernel, which can be exploited by a remote attacker to execute arbitrary code.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Over-read

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2020-00852
CVE-2019-10557

Produtos afetados

Apq8009
Apq8017
Apq8053
Apq8096Au
Linux Kernel
Mdm9206
Mdm9207C
Mdm9607
Mdm9650
Msm8996Au
Qca6174A
Qca6574Au
Qca9377
Qca9379
Qcn7605
Qcs605
Qualcomm Snapdragon Auto
Qualcomm Snapdragon Consumer Electronics Connectivity
Qualcomm Snapdragon Consumer Iot
Qualcomm Snapdragon Industrial Iot
Qualcomm Snapdragon Mobile
Qualcomm Snapdragon Voice & Music
Sda660
Sda845
Sdm630
Sdm636
Sdm660
Sdx20
Sdx55
Sxr1130