Sd616
Vendor:
First CVE: Feb 23, 2018 · Active for 8 years
285
Total CVEs
More Total CVEs than 85% of tracked products
95.0
Avg CVEs / Year
Higher CVE frequency than 83% of tracked products
8.7
Avg CVSS
Higher Avg CVSS than 69% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Sd616 over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 23, 2018
8 years ago
Most Recent CVE
Nov 26, 2024
605 days ago
CVE Severity & Scoring
Sd616285 CVEs
9%
37%
54%
All CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local77 (27.0%)
Network201 (70.5%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network7 (2.5%)
Attack Complexity
Low279 (97.9%)
High6 (2.1%)
Unknown0 (0.0%)
User Interaction
None278 (97.5%)
Unknown0 (0.0%)
Required7 (2.5%)
Privileges Required
Low72 (25.3%)
High0 (0.0%)
None213 (74.7%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (285 CVEs).
285 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-10529HIGH Possible use after free issue due to race condition while attempting to mark the entry pages as dirty using function set_page_dirty() in Snapdragon Auto, Snapdragon Compute, Snapdr | Nov 6, 2019 | 8.1 | 33 | NO | YES |
CVE-2018-13924CRITICAL Lack of check to prevent the buffer length taking negative values can lead to stack overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, | Jul 22, 2019 | 9.8 | 31 | NO | NO |
CVE-2018-13886CRITICAL Unchecked OTA field in GNSS XTRA3 lead to integer overflow and then buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon | May 24, 2019 | 9.8 | 31 | NO | NO |
CVE-2017-18314CRITICAL In Snapdragon (Automobile, Mobile, Wear) in version MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD | Sep 20, 2018 | 9.8 | 31 | NO | NO |
CVE-2019-2325CRITICAL Out of boundary access due to token received from ADSP and is used without validation as an index into the array in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Sn | Nov 6, 2019 | 9.8 | 30 | NO | NO |
CVE-2019-2254CRITICAL Position determination accuracy may be degraded due to wrongly decoded information in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapd | Jul 25, 2019 | 9.8 | 30 | NO | NO |
CVE-2019-2245CRITICAL Possible integer underflow can happen when calculating length of elementary stream map from invalid packet length which is later used to read from input buffer in Snapdragon Auto, | May 24, 2019 | 9.8 | 30 | NO | NO |
CVE-2018-11271CRITICAL Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Co | May 24, 2019 | 9.8 | 30 | NO | NO |
CVE-2018-5882CRITICAL While parsing a Flac file with a corrupted comment block, a buffer over-read can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear. | Jul 6, 2018 | 9.8 | 30 | NO | NO |
CVE-2016-10501CRITICAL In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FSM9055, MDM9206, MDM9607, MDM9635M, MDM9655, MSM890 | Apr 18, 2018 | 9.8 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (285 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
0.4% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (285 CVEs).
Media Mentions
Signals from CVEs in this product scope (285 CVEs).
Top CNAs Publishing CVEs For Sd616
Top CWEs
Versions
No cataloged versions.