4.6
CVSSv2

CVE-2019-14001

Published: 16/04/2020 Updated: 22/04/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Wrong public key usage from existing oem_keystore for hash generation in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8953, MSM8996AU, QM215, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDX20

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm apq8009_firmware -

qualcomm apq8017_firmware -

qualcomm apq8053_firmware -

qualcomm apq8096au_firmware -

qualcomm mdm9206_firmware -

qualcomm mdm9207c_firmware -

qualcomm mdm9607_firmware -

qualcomm mdm9650_firmware -

qualcomm msm8905_firmware -

qualcomm msm8909w_firmware -

qualcomm msm8917_firmware -

qualcomm msm8953_firmware -

qualcomm msm8996au_firmware -

qualcomm qm215_firmware -

qualcomm sdm429_firmware -

qualcomm sdm429w_firmware -

qualcomm sdm439_firmware -

qualcomm sdm450_firmware -

qualcomm sdm630_firmware -

qualcomm sdm632_firmware -

qualcomm sdm636_firmware -

qualcomm sdm660_firmware -

qualcomm sdx20_firmware -