PT-2020-9436 · Qualcomm · Snapdragon Industrial Iot+15

Published

2020-01-21

·

Updated

2020-01-24

·

CVE-2019-14010

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Qualcomm Snapdragon versions (affected versions not specified)
Description: The device may enter into an error state when a tool or application fails at the 1st buffer map all and performs a 2nd buffer map, which happens to be at the same physical address. This issue affects various Snapdragon products, including Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, and Snapdragon Voice & Music, in devices such as MDM9607, Nicobar, Rennell, SA6155P, SDM660, SDX55, SM6150, SM7150, SM8150, SM8250, and SXR2130.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-14010

Affected Products

Mdm9607
Nicobar
Rennell
Sa6155P
Sdm660
Sdx55
Sm6150
Sm7150
Sm8150
Sm8250
Sxr2130
Snapdragon Auto
Snapdragon Consumer Iot
Snapdragon Industrial Iot
Snapdragon Mobile
Snapdragon Voice & Music