Out of Bound issue in DSP services while processing received arguments due to improper validation of length received as an argument' in SD820, SD821, SD820, QCS603, QCS605, SDA855, SA6155P, SA6145P, SA6155, SA6155P, SD855, SD 675, SD660, SD429, SD439
Un Problema fuera de límites en los servicios DSP mientras se procesan los argumentos recibidos debido a una comprobación inapropiada de la longitud recibida como argumento en versiones SD820, SD821, SD820, QCS603, QCS605, SDA855, SA6155P, SA6145P, SA6155, SA6155P, SD855, SD 675, SD660, SD429, SD439
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
| Attack Vector | LOCAL |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | LOW |
| User Interaction | NONE |
| Scope | UNCHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | HIGH |
| Availability Impact | HIGH |
AV:L/AC:L/Au:N/C:C/I:C/A:C
| Access Vector | LOCAL |
|---|---|
| Access Complexity | LOW |
| Authentication | NONE |
| Confidentiality Impact | COMPLETE |
| Integrity Impact | COMPLETE |
| Availability Impact | COMPLETE |
| Source | Type | Description |
|---|---|---|
| [email protected] | Primary |
en
CWE-191
|
| Vendor | Product | Version | Update | Type |
|---|---|---|---|---|
| qualcomm | sd820_firmware | - | <built-in method update of dict object at 0x7763f057e680> | Operating System |
| qualcomm | sd821_firmware | - | <built-in method update of dict object at 0x77636c594d00> | Operating System |
| qualcomm | qcs603_firmware | - | <built-in method update of dict object at 0x77636c5942c0> | Operating System |
| qualcomm | qcs605_firmware | - | <built-in method update of dict object at 0x7763d87eff00> | Operating System |
| qualcomm | sda855_firmware | - | <built-in method update of dict object at 0x7763f057e540> | Operating System |
| qualcomm | sa6155p_firmware | - | <built-in method update of dict object at 0x7763a09f9f40> | Operating System |
| qualcomm | sa6145p_firmware | - | <built-in method update of dict object at 0x77636c594b80> | Operating System |
| qualcomm | sa6155_firmware | - | <built-in method update of dict object at 0x77636c597580> | Operating System |
| qualcomm | sa6155p_firmware | - | <built-in method update of dict object at 0x77636c594e80> | Operating System |
| qualcomm | sd855_firmware | - | <built-in method update of dict object at 0x7763f057ccc0> | Operating System |
| qualcomm | sd675_firmware | - | <built-in method update of dict object at 0x77636c594040> | Operating System |
| qualcomm | sd660_firmware | - | <built-in method update of dict object at 0x77636c595b80> | Operating System |
| qualcomm | sd429_firmware | - | <built-in method update of dict object at 0x77636c5968c0> | Operating System |
| qualcomm | sd439_firmware | - | <built-in method update of dict object at 0x77636c597340> | Operating System |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sd820_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sd820:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sd821_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sd821:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:qcs603_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:qcs603:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:qcs605_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:qcs605:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sda855_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sda855:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sa6145p_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sa6145p:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sa6155_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sa6155:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sd855_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sd855:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sd675_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sd675:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sd660_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sd660:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sd429_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sd429:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| Yes | cpe:2.3:o:qualcomm:sd439_firmware:-:*:*:*:*:*:*:* |
| Vulnerable | CPE |
|---|---|
| No | cpe:2.3:h:qualcomm:sd439:-:*:*:*:*:*:*:* |