CVE-2019-14014
Summary
| CVE | CVE-2019-14014 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2020-01-21 07:15:00 UTC |
| Updated | 2020-01-23 18:56:00 UTC |
| Description | Possible buffer overflow when byte array receives incorrect input from reading source as array is not null terminated in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in Nicobar, SDM670, SDM710, SDM845, SM6150, SM8150, SM8250, SXR2130 |
Risk And Classification
Problem Types: CWE-120
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Nicobar | - | All | All | All |
| Hardware | Qualcomm | Nicobar | - | All | All | All |
| Operating System | Qualcomm | Nicobar Firmware | - | All | All | All |
| Operating System | Qualcomm | Nicobar Firmware | - | All | All | All |
| Hardware | Qualcomm | Sdm670 | - | All | All | All |
| Hardware | Qualcomm | Sdm670 | - | All | All | All |
| Operating System | Qualcomm | Sdm670 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sdm670 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sdm710 | - | All | All | All |
| Hardware | Qualcomm | Sdm710 | - | All | All | All |
| Operating System | Qualcomm | Sdm710 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sdm710 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sdm845 | - | All | All | All |
| Hardware | Qualcomm | Sdm845 | - | All | All | All |
| Operating System | Qualcomm | Sdm845 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sdm845 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sm6150 | - | All | All | All |
| Hardware | Qualcomm | Sm6150 | - | All | All | All |
| Operating System | Qualcomm | Sm6150 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sm6150 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sm8150 | - | All | All | All |
| Hardware | Qualcomm | Sm8150 | - | All | All | All |
| Operating System | Qualcomm | Sm8150 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sm8150 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sm8250 | - | All | All | All |
| Hardware | Qualcomm | Sm8250 | - | All | All | All |
| Operating System | Qualcomm | Sm8250 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sm8250 Firmware | - | All | All | All |
| Hardware | Qualcomm | Sxr2130 | - | All | All | All |
| Hardware | Qualcomm | Sxr2130 | - | All | All | All |
| Operating System | Qualcomm | Sxr2130 Firmware | - | All | All | All |
| Operating System | Qualcomm | Sxr2130 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| January 2020 Security Bulletin | Qualcomm | CONFIRM | www.qualcomm.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.