7.2
CVSSv2

CVE-2019-10601

Published: 18/12/2019 Updated: 22/12/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Out of bound access can occur while processing firmware event due to lack of validation of WMI message received from firmware in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MSM8996AU, Nicobar, QCA6574AU, QCN7605, QCS405, SDM630, SDM636, SDM660, SDM845, SM6150, SM7150, SM8150

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm apq8096au_firmware -

qualcomm ipq4019_firmware -

qualcomm ipq8064_firmware -

qualcomm ipq8074_firmware -

qualcomm msm8996au_firmware -

qualcomm nicobar_firmware -

qualcomm qca6574au_firmware -

qualcomm qcn7605_firmware -

qualcomm qcs405_firmware -

qualcomm sdm630_firmware -

qualcomm sdm636_firmware -

qualcomm sdm660_firmware -

qualcomm sdm845_firmware -

qualcomm sm6150_firmware -

qualcomm sm7150_firmware -

qualcomm sm8150_firmware -