Description
While IPA driver processes route add rule IOCTL, there is no input validation of the rule ID prior to adding the rule to the IPA HW commit list in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8053, APQ8096AU, MDM9607, MSM8909W, MSM8996, MSM8996AU, QCN7605, QCS605, SC8180X, SDA845, SDX20, SDX24, SDX55, SM8150, SXR1130
Published: 2020-06-22
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-5304 While IPA driver processes route add rule IOCTL, there is no input validation of the rule ID prior to adding the rule to the IPA HW commit list in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8053, APQ8096AU, MDM9607, MSM8909W, MSM8996, MSM8996AU, QCN7605, QCS605, SC8180X, SDA845, SDX20, SDX24, SDX55, SM8150, SXR1130
History

No history.

Subscriptions

Qualcomm Apq8053 Apq8053 Firmware Apq8096au Apq8096au Firmware Mdm9607 Mdm9607 Firmware Msm8909w Msm8909w Firmware Msm8996 Msm8996 Firmware Msm8996au Msm8996au Firmware Qcn7605 Qcn7605 Firmware Qcs605 Qcs605 Firmware Sc8180x Sc8180x Firmware Sda845 Sda845 Firmware Sdx20 Sdx20 Firmware Sdx24 Sdx24 Firmware Sdx55 Sdx55 Firmware Sm8150 Sm8150 Firmware Sxr1130 Sxr1130 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-08-05T00:05:44.158Z

Reserved: 2019-07-19T00:00:00.000Z

Link: CVE-2019-14047

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-06-22T07:15:11.333

Modified: 2024-11-21T04:25:58.643

Link: CVE-2019-14047

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses