CVE-2019-14085

HIGH

Qualcomm QCN7605/QCS605/SDA845/SDM670/SDM710/SDM845/SDM850/SM8150/SXR1130 Firmware - Integer Underflow in WLAN Function

Title source: llm
STIX 2.1

Description

Possible Integer underflow in WLAN function due to lack of check of data received from user side in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in QCN7605, QCS605, SDA845, SDM670, SDM710, SDM845, SDM850, SM8150, SXR1130

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0003
EPSS Percentile 10.0%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-191
Status published
Products (9)
qualcomm/qcn7605_firmware
qualcomm/qcs605_firmware
qualcomm/sda845_firmware
qualcomm/sdm670_firmware
qualcomm/sdm710_firmware
qualcomm/sdm845_firmware
qualcomm/sdm850_firmware
qualcomm/sm8150_firmware
qualcomm/sxr1130_firmware
Published Mar 05, 2020
Tracked Since Feb 18, 2026