Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux

CVE-2019-2275
CVE information
Published
Last Modified
CVSSv2.0 Severity
CVSSv3.1 Severity
Impact Analysis
Description
While deserializing any key blob during key operations, buffer overflow could occur exposing partial key information if any key operations are invoked(Depends on CVE-2018-13907) in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in MDM9150, MDM9205, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, QCS404, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130.
CVSSv2.0 Score
- Severity
- Low
- Base Score
- 2.1/10
- Exploit Score
- 3.9/10
- Access Vector
- Local
- Access Complexity
- Low
- Authentication Required
- None
- Impact Score
- 2.9/10
- Confidentiality Impact
- Partial
- Availability Impact
- None
- Integrity Impact
- None
CVSSv3.1 Score
- Severity
- Medium
- Base Score
- 5.5/10
- Exploit Score
- 1.8/10
- Access Vector
- Local
- Access Complexity
- Low
- Privileges Required
- Low
- Impact Score
- 3.6/10
- Confidentiality Impact
- High
- Availability Impact
- None
- Integrity Impact
- None
- Scope
- Unchanged
- User Interaction
- None
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:o:qualcomm:mdm9150_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:mdm9150:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:mdm9205_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:mdm9205:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:mdm9206_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:mdm9206:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:mdm9607_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:mdm9607:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:mdm9650_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:mdm9650:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:msm8909w_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:msm8909w:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:msm8996au_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:msm8996au:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:qcs404_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:qcs404:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:qcs605_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:qcs605:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:qualcomm_215_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:qualcomm_215:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_210_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_210:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_212_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_212:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_205_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_205:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_410_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_410:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_412_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_412:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_425_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_425:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_427_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_427:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_430_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_430:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_435_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_435:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_439_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_439:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_429_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_429:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_450_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_450:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_625_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_625:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_632_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_632:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_636_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_636:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_650_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_650:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_652_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_652:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_712_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_712:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_710_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_710:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_670_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_670:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_820_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_820:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_820a_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_820a:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_835_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_835:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_845_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_845:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_850_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_850:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_855_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_855:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sd_8cx_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sd_8cx:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sda660_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sda660:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sdm439_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sdm439:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sdm630_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sdm630:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sdm660_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sdm660:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:snapdragon_high_med_2016_firmware:-:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:snapdragon_high_med_2016:-:*:*:*:*:*:*:* |
No
|
- | ||
cpe:2.3:o:qualcomm:sxr1130_firmware:-:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:h:qualcomm:sxr1130:-:*:*:*:*:*:*:* |
No
|
- |