PT-2020-9440 · Qualcomm · Qualcomm Snapdragon

Published

2020-01-21

·

Updated

2020-01-23

·

CVE-2019-14014

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Qualcomm Snapdragon versions prior to the fixed version (affected versions not specified)
Description: The issue is related to a possible buffer overflow when a byte array receives incorrect input from a reading source. This occurs because the array is not null-terminated. The estimated number of potentially affected devices worldwide is not available. There is no information about real-world incidents where this issue was exploited. Technical details about exploitation include the lack of null-termination in the byte array, which can lead to a buffer overflow when incorrect input is received.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-14014

Affected Products

Qualcomm Snapdragon