HIGH · 7.1

CVE-2019-14081

Buffer Over-read when WLAN module gets a WMI message for SAR limits with invalid number of limits to be enforced in Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consume...

Vulnerability Description

Buffer Over-read when WLAN module gets a WMI message for SAR limits with invalid number of limits to be enforced in Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8098, IPQ8074, MSM8998, QCA8081, QCN7605, QCS605, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM8150, SXR1130

CVSS Score

7.1

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
QualcommApq8098 Firmware-
QualcommApq8098-
QualcommIpq8074 Firmware-
QualcommIpq8074-
QualcommMsm8998 Firmware-
QualcommMsm8998-
QualcommQca8081 Firmware-
QualcommQca8081-
QualcommQcn7605 Firmware-
QualcommQcn7605-
QualcommQcs605 Firmware-
QualcommQcs605-
QualcommSda660 Firmware-
QualcommSda660-
QualcommSda845 Firmware-
QualcommSda845-
QualcommSdm630 Firmware-
QualcommSdm630-
QualcommSdm636 Firmware-
QualcommSdm636-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-14081?

CVE-2019-14081 is a vulnerability with a CVSS score of 7.1 (HIGH). Buffer Over-read when WLAN module gets a WMI message for SAR limits with invalid number of limits to be enforced in Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consume...

How severe is CVE-2019-14081?

CVE-2019-14081 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-14081?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Apq8098 Firmware, Qualcomm Apq8098, Qualcomm Ipq8074 Firmware, Qualcomm Ipq8074, Qualcomm Msm8998 Firmware.