CVE-2019-2301 Information
Feb 14, 2021
cve
Description
Possibility of out-of-bound read if id received from SPI is not in range of FIFO in Snapdragon Auto Snapdragon Compute Snapdragon Consumer IOT Snapdragon Industrial IOT Snapdragon Mobile Snapdragon Wearables Snapdragon Wired Infrastructure and Networking in IPQ4019 IPQ8064 MSM8909W MSM8996AU QCA9980 QCS605 Qualcomm 215 SD 425 SD 439 / SD 429 SD 450 SD 625 SD 632 SD 636 SD 712 / SD 710 / SD 670 SD 820A SD 845 / SD 850 SD 855 SDM439 SDM660 SDX24
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
https://www.codeaurora.org/security-bulletin/2019/07/01/july-2019-code-aurora-security-bulletin
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Share on: