Vulnerability Description
Possible out of bound access in WLAN handler when the received value of length in rx path is shorter than the expected value of country IE in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ8074, QCA8081, QCS605, SDA845, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Ipq8074 Firmware | - |
| Qualcomm | Ipq8074 | - |
| Qualcomm | Qca8081 Firmware | - |
| Qualcomm | Qca8081 | - |
| Qualcomm | Qcs605 Firmware | - |
| Qualcomm | Qcs605 | - |
| Qualcomm | Sda845 Firmware | - |
| Qualcomm | Sda845 | - |
| Qualcomm | Sdm670 Firmware | - |
| Qualcomm | Sdm670 | - |
| Qualcomm | Sdm710 Firmware | - |
| Qualcomm | Sdm710 | - |
| Qualcomm | Sdm845 Firmware | - |
| Qualcomm | Sdm845 | - |
| Qualcomm | Sdm850 Firmware | - |
| Qualcomm | Sdm850 | - |
| Qualcomm | Sm6150 Firmware | - |
| Qualcomm | Sm6150 | - |
| Qualcomm | Sm7150 Firmware | - |
| Qualcomm | Sm7150 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/april-2020-bulletinVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/april-2020-bulletinVendor Advisory
FAQ
What is CVE-2019-14134?
CVE-2019-14134 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Possible out of bound access in WLAN handler when the received value of length in rx path is shorter than the expected value of country IE in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon In...
How severe is CVE-2019-14134?
CVE-2019-14134 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2019-14134?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Ipq8074 Firmware, Qualcomm Ipq8074, Qualcomm Qca8081 Firmware, Qualcomm Qca8081, Qualcomm Qcs605 Firmware.