PT-2019-11933 · Qualcomm · Apq8009+25
Published
2019-12-18
·
Updated
2019-12-23
·
CVE-2019-10564
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Qualcomm Snapdragon versions in APQ8009, APQ8053, MSM8909W, MSM8917, MSM8953, Nicobar, QCS405, QCS605, QM215, SA6155P, SDA845, SDM429, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Description
The issue is related to a possible out-of-bounds (OOB) problem in the EEPROM due to a lack of checks when accessing the memory map array during a reading operation. This affects various Qualcomm Snapdragon products, including Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, and Snapdragon Wearables.
Recommendations
For APQ8009, consider implementing checks for memory access operations to prevent OOB issues.
For APQ8053, ensure that memory map array accesses are validated to prevent unauthorized reads.
For MSM8909W, restrict access to sensitive memory areas to minimize the risk of exploitation.
For MSM8917, implement bounds checking for memory operations to prevent OOB access.
For MSM8953, validate memory access requests to prevent unauthorized reads.
For Nicobar, restrict access to sensitive memory areas to minimize the risk of exploitation.
For QCS405, ensure that memory map array accesses are validated to prevent unauthorized reads.
For QCS605, implement bounds checking for memory operations to prevent OOB access.
For QM215, consider implementing checks for memory access operations to prevent OOB issues.
For SA6155P, restrict access to sensitive memory areas to minimize the risk of exploitation.
For SDA845, ensure that memory map array accesses are validated to prevent unauthorized reads.
For SDM429, implement bounds checking for memory operations to prevent OOB access.
For SDM439, validate memory access requests to prevent unauthorized reads.
For SDM450, restrict access to sensitive memory areas to minimize the risk of exploitation.
For SDM632, consider implementing checks for memory access operations to prevent OOB issues.
For SDM670, ensure that memory map array accesses are validated to prevent unauthorized reads.
For SDM710, implement bounds checking for memory operations to prevent OOB access.
For SDM845, validate memory access requests to prevent unauthorized reads.
For SDX24, restrict access to sensitive memory areas to minimize the risk of exploitation.
For SDX55, ensure that memory map array accesses are validated to prevent unauthorized reads.
For SM6150, implement bounds checking for memory operations to prevent OOB access.
For SM7150, consider implementing checks for memory access operations to prevent OOB issues.
For SM8150, restrict access to sensitive memory areas to minimize the risk of exploitation.
For SM8250, ensure that memory map array accesses are validated to prevent unauthorized reads.
For SXR1130, implement bounds checking for memory operations to prevent OOB access.
For SXR2130, validate memory access requests to prevent unauthorized reads.
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Apq8009
Apq8053
Msm8909W
Msm8917
Msm8953
Nicobar
Qcs405
Qcs605
Qm215
Sa6155P
Sda845
Sdm429
Sdm439
Sdm450
Sdm632
Sdm670
Sdm710
Sdm845
Sdx24
Sdx55
Sm6150
Sm7150
Sm8150
Sm8250
Sxr1130
Sxr2130