CVE-2019-2318 PUBLISHED CVSS 5.5 MEDIUM

Non Secure Kernel can cause Trustzone to do an arbitrary memory read which will result into DOS in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8096, APQ8096AU, IPQ8074, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, QCA8081, QM215, SDM429, SDM439, SDM450, SDM632, Snapdragon_High_Med_2016

EPSS 0.11% · 28.9th percentile

Risk Scores

CVSS v3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.11%
28.9th percentile

Affected Products

VendorProductVersions
qualcommsdm632_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingAPQ8017, APQ8053, APQ8096, APQ8096AU, IPQ8074, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, QCA8081, QM215, SDM429, SDM439, SDM450, SDM632, Snapdragon_High_Med_2016
qualcommsnapdragon_high_med_2016_firmware
qualcommmsm8996au_firmware
qualcommsdm439_firmware
qualcommapq8096_firmware
qualcommmsm8940_firmware
qualcommmsm8917_firmware
qualcommqm215_firmware
qualcommapq8096au_firmware
qualcommapq8017_firmware
qualcommqca8081_firmware
qualcommipq8074_firmware
qualcommmsm8996_firmware
qualcommmsm8937_firmware
qualcommmsm8920_firmware
qualcommsdm450_firmware
qualcommapq8053_firmware
qualcommsdm429_firmware
qualcommmsm8953_firmware

Timeline

References

Open in Interactive Console →