7.2
CVSSv2

CVE-2019-10604

Published: 05/03/2020 Updated: 09/03/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Possibility of heap-buffer-overflow during last iteration of loop while populating image version information in diag command response packet, in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8096AU, APQ8098, MDM9607, MDM9640, MSM8909W, MSM8917, MSM8953, Nicobar, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDM429, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm apq8053_firmware -

qualcomm apq8096au_firmware -

qualcomm apq8098_firmware -

qualcomm mdm9607_firmware -

qualcomm mdm9640_firmware -

qualcomm msm8909w_firmware -

qualcomm msm8917_firmware -

qualcomm msm8953_firmware -

qualcomm nicobar_firmware -

qualcomm qcs605_firmware -

qualcomm qm215_firmware -

qualcomm rennell_firmware -

qualcomm sa6155p_firmware -

qualcomm saipan_firmware -

qualcomm sda660_firmware -

qualcomm sdm429_firmware -

qualcomm sdm439_firmware -

qualcomm sdm450_firmware -

qualcomm sdm632_firmware -

qualcomm sdm670_firmware -

qualcomm sdm710_firmware -

qualcomm sdm845_firmware -

qualcomm sm6150_firmware -

qualcomm sm7150_firmware -

qualcomm sm8150_firmware -

qualcomm sm8250_firmware -

qualcomm sxr1130_firmware -

qualcomm sxr2130_firmware -