PT-2020-9541 · Qualcomm · Sdm710+16
Published
2020-04-16
·
Updated
2020-04-21
·
CVE-2019-14134
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Qualcomm Snapdragon versions (affected versions not specified)
Description:
The issue concerns a possible out of bound access in the WLAN handler. This occurs when the received value of length in the rx path is shorter than the expected value of country IE. The affected products include Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in various chipsets such as IPQ8074, QCA8081, QCS605, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ipq8074
Qca8081
Qcs605
Sda845
Sdm670
Sdm710
Sdm845
Sdm850
Sm6150
Sm7150
Sm8150
Sxr1130
Snapdragon Compute
Snapdragon Consumer Iot
Snapdragon Industrial Iot
Snapdragon Mobile
Snapdragon Wired Infrastructure/Networking