7.8
CVSSv3

CVE-2019-2308

Published: 25/07/2019 Updated: 24/08/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

User application could potentially make RPC call to the fastrpc driver and the driver will allow the message to go through to the remote subsystem in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9607, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm mdm9150 firmware -

qualcomm mdm9607 firmware -

qualcomm mdm9650 firmware -

qualcomm msm8909w firmware -

qualcomm msm8996au firmware -

qualcomm qcs405 firmware -

qualcomm qcs605 firmware -

qualcomm qualcomm 215 firmware -

qualcomm sd 425 firmware -

qualcomm sd 427 firmware -

qualcomm sd 430 firmware -

qualcomm sd 435 firmware -

qualcomm sd 439 firmware -

qualcomm sd 429 firmware -

qualcomm sd 450 firmware -

qualcomm sd 625 firmware -

qualcomm sd 632 firmware -

qualcomm sd 636 firmware -

qualcomm sd 665 firmware -

qualcomm sd 675 firmware -

qualcomm sd 712 firmware -

qualcomm sd 710 firmware -

qualcomm sd 670 firmware -

qualcomm sd 730 firmware -

qualcomm sd 820a firmware -

qualcomm sd 835 firmware -

qualcomm sd 845 firmware -

qualcomm sd 850 firmware -

qualcomm sd 855 firmware -

qualcomm sda660 firmware -

qualcomm sdm439 firmware -

qualcomm sdm630 firmware -

qualcomm sdm660 firmware -

qualcomm sdx20 firmware -

qualcomm sdx24 firmware -

Recent Articles

July is here – and so are the latest Android security fixes. Plenty of critical updates for all
The Register • Shaun Nichols in San Francisco • 01 Jul 2019

Patch, punch, it's the first of the month It is with a heavy heart that we must report that your software has bugs and needs patching: Microsoft, Adobe, SAP, Intel emit security fixes

Google today posted a fresh round of Android security fixes. The July update addresses a total of 33 CVE-listed vulnerabilities, nine of them classified as critical risks. At the basic 2019-07-01 level, a dozen bugs are addressed. Five of those would allow for remote code execution if exploited; three (CVE-2019-2106, CVE-2019-2107, CVE-2019-2100) in the Android media framework, while another (CVE-2019-2105) is in Android Library and the fifth (CVE-2019-2105) is found in the System. All would be ...