CVE-2019-14089: High severity Google Android vulnerability
u'Keymaster attestation key and device IDs provisioning which is a one time process is incorrectly allowed to be re-provisioned after a user data erase or a factory reset' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in Kamorta, Nicobar, QCS404, QCS610, Rennell, SA515M, SA6155P, SC7180, SC8180X, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-14089.
What is the severity of CVE-2019-14089?
The severity of CVE-2019-14089 is high with a severity value of 7.8.
How does CVE-2019-14089 impact Snapdragon Auto?
CVE-2019-14089 impacts Snapdragon Auto.
Is Google Android affected by CVE-2019-14089?
Yes, Google Android is affected by CVE-2019-14089.
How can I fix CVE-2019-14089?
To fix CVE-2019-14089, you should refer to the official August 2020 security bulletin from Qualcomm and follow the recommended mitigation steps.