3.6
CVSSv2

CVE-2019-14038

Published: 02/06/2020 Updated: 21/07/2021
CVSS v2 Base Score: 3.6 | Impact Score: 4.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.1 | Impact Score: 5.2 | Exploitability Score: 1.8
VMScore: 320
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

Buffer over-read in ADSP parse function due to lack of check for availability of sufficient data payload received in command response in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8917, MSM8953, QCS605, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM670, SDM710, SDM845, SDX20, SDX24

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm apq8009_firmware -

qualcomm apq8053_firmware -

qualcomm apq8098_firmware -

qualcomm mdm9206_firmware -

qualcomm mdm9207c_firmware -

qualcomm mdm9607_firmware -

qualcomm mdm9640_firmware -

qualcomm mdm9650_firmware -

qualcomm msm8905_firmware -

qualcomm msm8909w_firmware -

qualcomm msm8917_firmware -

qualcomm msm8953_firmware -

qualcomm qcs605_firmware -

qualcomm sda660_firmware -

qualcomm sda845_firmware -

qualcomm sdm429_firmware -

qualcomm sdm429w_firmware -

qualcomm sdm439_firmware -

qualcomm sdm670_firmware -

qualcomm sdm710_firmware -

qualcomm sdm845_firmware -

qualcomm sdx20_firmware -

qualcomm sdx24_firmware -