CVE-2019-14066

EUVD-2019-5322
Integer overflow in calculating estimated output buffer size when getting a list of installed Feature IDs, Serial Numbers or checking Feature ID status in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in Kamorta, MDM9205, MDM9607, Nicobar, QCS404, QCS405, Rennell, SA6155P, SC7180, SC8180X, SDX55, SM6150, SM7150, SXR2130
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 9%
Affected Products (NVD)
VendorProductVersion
qualcommkamorta_firmware
-
qualcommmdm9205_firmware
-
qualcommmdm9607_firmware
-
qualcommnicobar_firmware
-
qualcommqcs404_firmware
-
qualcommqcs405_firmware
-
qualcommrennell_firmware
-
qualcommsa6155p_firmware
-
qualcommsc7180_firmware
-
qualcommsc8180x_firmware
-
qualcommsdx55_firmware
-
qualcommsm6150_firmware
-
qualcommsm7150_firmware
-
qualcommsxr2130_firmware
-
𝑥
= Vulnerable software versions