CVE-2019-10620

EUVD-2019-2424
Kernel memory error in debug module due to improper check of user data length before copying into memory in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8096AU, APQ8098, MSM8996AU, QCN7605, SDM439, SDX24, SM8150
Classic Buffer Overflow
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
Affected Products (NVD)
VendorProductVersion
qualcommapq8096au_firmware
-
qualcommapq8098_firmware
-
qualcommmsm8996au_firmware
-
qualcommqcn7605_firmware
-
qualcommsdm439_firmware
-
qualcommsdx24_firmware
-
qualcommsm8150_firmware
-
𝑥
= Vulnerable software versions