Description
User keystore signature is ignored in boot and can lead to bypass boot image signature verification in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in MDM9607, MDM9640, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 845 / SD 850, SDM660
Published: 2019-07-25
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2019-11920 User keystore signature is ignored in boot and can lead to bypass boot image signature verification in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in MDM9607, MDM9640, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 845 / SD 850, SDM660
History

No history.

Subscriptions

Qualcomm Mdm9607 Mdm9607 Firmware Mdm9640 Mdm9640 Firmware Sd 425 Sd 425 Firmware Sd 427 Sd 427 Firmware Sd 430 Sd 430 Firmware Sd 435 Sd 435 Firmware Sd 450 Sd 450 Firmware Sd 625 Sd 625 Firmware Sd 636 Sd 636 Firmware Sd 670 Sd 670 Firmware Sd 710 Sd 710 Firmware Sd 712 Sd 712 Firmware Sd 845 Sd 845 Firmware Sd 850 Sd 850 Firmware Sdm660 Sdm660 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published:

Updated: 2024-08-04T18:42:51.125Z

Reserved: 2018-12-10T00:00:00.000Z

Link: CVE-2019-2278

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-07-25T17:15:12.817

Modified: 2024-11-21T04:40:36.343

Link: CVE-2019-2278

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses