CVE-2019-2319

HIGH

Qualcomm Multiple Chipsets Firmware - Out-of-bounds Write

Title source: llm
STIX 2.1

Description

HLOS could corrupt CPZ page table memory for S1 managed VMs in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in MDM9205, QCS404, QCS605, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0010
EPSS Percentile 27.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-787
Status published
Products (13)
qualcomm/mdm9205_firmware
qualcomm/qcs404_firmware
qualcomm/qcs605_firmware
qualcomm/sda845_firmware
qualcomm/sdm670_firmware
qualcomm/sdm710_firmware
qualcomm/sdm845_firmware
qualcomm/sdm850_firmware
qualcomm/sm6150_firmware
qualcomm/sm7150_firmware
... and 3 more
Published Dec 12, 2019
Tracked Since Feb 18, 2026