Description
While handling the vendor command there is an integer truncation issue that could yield a buffer overflow due to int data type copied to u8 data type in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8096AU, MSM8996AU, QCA6574AU, QCN7605, Rennell, SC8180X, SDM710, SDX55, SM7150, SM8150, SM8250, SXR2130
Published: 2020-04-16
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-2428 While handling the vendor command there is an integer truncation issue that could yield a buffer overflow due to int data type copied to u8 data type in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8096AU, MSM8996AU, QCA6574AU, QCN7605, Rennell, SC8180X, SDM710, SDX55, SM7150, SM8150, SM8250, SXR2130
History

No history.

Subscriptions

Qualcomm Apq8096au Apq8096au Firmware Msm8996au Msm8996au Firmware Qca6574au Qca6574au Firmware Qcn7605 Qcn7605 Firmware Rennell Rennell Firmware Sc8180x Sc8180x Firmware Sdm710 Sdm710 Firmware Sdx55 Sdx55 Firmware Sm7150 Sm7150 Firmware Sm8150 Sm8150 Firmware Sm8250 Sm8250 Firmware Sxr2130 Sxr2130 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-08-04T22:31:59.927Z

Reserved: 2019-03-29T00:00:00.000Z

Link: CVE-2019-10624

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-16T11:15:14.103

Modified: 2024-11-21T04:19:36.737

Link: CVE-2019-10624

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses