Description
Lack of length check of response buffer can lead to buffer over-flow while GP command response buffer handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8098, MDM9206, MDM9607, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, QM215, SDA660, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660
Published: 2020-04-16
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-2393 Lack of length check of response buffer can lead to buffer over-flow while GP command response buffer handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8098, MDM9206, MDM9607, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8998, QM215, SDA660, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660
History

No history.

Subscriptions

Qualcomm Apq8017 Apq8017 Firmware Apq8053 Apq8053 Firmware Apq8098 Apq8098 Firmware Mdm9206 Mdm9206 Firmware Mdm9607 Mdm9607 Firmware Msm8917 Msm8917 Firmware Msm8920 Msm8920 Firmware Msm8937 Msm8937 Firmware Msm8940 Msm8940 Firmware Msm8953 Msm8953 Firmware Msm8998 Msm8998 Firmware Qm215 Qm215 Firmware Sda660 Sda660 Firmware Sdm429 Sdm429 Firmware Sdm439 Sdm439 Firmware Sdm450 Sdm450 Firmware Sdm630 Sdm630 Firmware Sdm632 Sdm632 Firmware Sdm636 Sdm636 Firmware Sdm660 Sdm660 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-08-04T22:24:18.706Z

Reserved: 2019-03-29T00:00:00.000Z

Link: CVE-2019-10589

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-16T11:15:13.277

Modified: 2024-11-21T04:19:31.300

Link: CVE-2019-10589

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses