5
CVSSv2

CVE-2019-2317

Published: 05/03/2020 Updated: 05/03/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The secret key used to make the Initial Sequence Number in the TCP SYN packet could be brute forced and therefore can be predicted in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, Nicobar, QCM2150, QM215, SC8180X, SDM429, SDM439, SDM450, SDM632, SDX24, SDX55, SM6150, SM7150, SM8150

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm msm8905_firmware -

qualcomm msm8909_firmware -

qualcomm msm8917_firmware -

qualcomm msm8920_firmware -

qualcomm msm8937_firmware -

qualcomm msm8940_firmware -

qualcomm msm8953_firmware -

qualcomm nicobar_firmware -

qualcomm qcm2150_firmware -

qualcomm qm215_firmware -

qualcomm sc8180x_firmware -

qualcomm sdm429_firmware -

qualcomm sdm439_firmware -

qualcomm sdm450_firmware -

qualcomm sdm632_firmware -

qualcomm sdx24_firmware -

qualcomm sdx55_firmware -

qualcomm sm6150_firmware -

qualcomm sm7150_firmware -

qualcomm sm8150_firmware -