CVE-2019-14027: Buffer Overflow
Buffer overflow due to lack of upper bound check on channel length which is used for a loop. in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in APQ8098, IPQ6018, IPQ8074, MSM8998, Nicobar, QCA8081, QCN7605, QCS404, QCS605, Rennell, SC8180X, SDA660, SDA845, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SXR1130, SXR2130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-14027?
The severity of CVE-2019-14027 is classified as critical due to the potential for buffer overflow leading to arbitrary code execution.
How do I fix CVE-2019-14027?
To fix CVE-2019-14027, update the affected Qualcomm firmware to the latest version provided by the vendor.
Which devices are affected by CVE-2019-14027?
CVE-2019-14027 affects various Snapdragon devices, including those under Qualcomm's APQ8098, IPQ6018, and MSM8998 firmware.
What is the impact of CVE-2019-14027?
The impact of CVE-2019-14027 includes possible denial of service or remote code execution due to the buffer overflow vulnerability.
Is there a workaround for CVE-2019-14027?
There are no known workarounds for CVE-2019-14027; the only mitigation is to apply the firmware updates as soon as they become available.