7.8
CVSSv3

CVE-2019-10481

Published: 18/12/2019 Updated: 23/12/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Out of bound access occurs while handling the WMI FW event due to lack of check of buffer argument which comes directly from the WLAN FW in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MDM9607, MSM8996AU, QCA6574AU, QCA8081, QCN7605, SDX55, SM6150, SM7150, SM8150

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm apq8096au_firmware -

qualcomm ipq4019_firmware -

qualcomm ipq8064_firmware -

qualcomm ipq8074_firmware -

qualcomm mdm9607_firmware -

qualcomm msm8996au_firmware -

qualcomm qca6574au_firmware -

qualcomm qca8081_firmware -

qualcomm qcn7605_firmware -

qualcomm sdx55_firmware -

qualcomm sm6150_firmware -

qualcomm sm7150_firmware -

qualcomm sm8150_firmware -