CVE-2019-14027

HIGH

Snapdragon - Buffer Overflow

Title source: llm
STIX 2.1

Description

Buffer overflow due to lack of upper bound check on channel length which is used for a loop. in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8098, IPQ6018, IPQ8074, MSM8998, Nicobar, QCA8081, QCN7605, QCS404, QCS605, Rennell, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0003
EPSS Percentile 10.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-120
Status published
Products (25)
qualcomm/apq8098_firmware
qualcomm/ipq6018_firmware
qualcomm/ipq8074_firmware
qualcomm/msm8998_firmware
qualcomm/nicobar_firmware
qualcomm/qca8081_firmware
qualcomm/qcn7605_firmware
qualcomm/qcs404_firmware
qualcomm/qcs605_firmware
qualcomm/rennell_firmware
... and 15 more
Published Mar 05, 2020
Tracked Since Feb 18, 2026