CVE-2019-10564

EUVD-2019-2368
Possible OOB issue in EEPROM due to lack of check while accessing memory map array at the time of reading operation in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, MSM8909W, MSM8917, MSM8953, Nicobar, QCS405, QCS605, QM215, SA6155P, SDA845, SDM429, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
Affected Products (NVD)
VendorProductVersion
qualcommapq8009_firmware
-
qualcommapq8053_firmware
-
qualcommmsm8909w_firmware
-
qualcommmsm8917_firmware
-
qualcommmsm8953_firmware
-
qualcommnicobar_firmware
-
qualcommqcs405_firmware
-
qualcommqcs605_firmware
-
qualcommqm215_firmware
-
qualcommsa6155p_firmware
-
qualcommsda845_firmware
-
qualcommsdm429_firmware
-
qualcommsdm439_firmware
-
qualcommsdm450_firmware
-
qualcommsdm632_firmware
-
qualcommsdm670_firmware
-
qualcommsdm710_firmware
-
qualcommsdm845_firmware
-
qualcommsdx24_firmware
-
qualcommsdx55_firmware
-
qualcommsm6150_firmware
-
qualcommsm7150_firmware
-
qualcommsm8150_firmware
-
qualcommsm8250_firmware
-
qualcommsxr1130_firmware
-
qualcommsxr2130_firmware
-
𝑥
= Vulnerable software versions