Sdm850 Firmware
Vendor:
First CVE: Nov 21, 2019 · Active for 6 years
142
Total CVEs
More Total CVEs than 99% of tracked products
35.5
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
8.2
Avg CVSS
Higher Avg CVSS than 74% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Sdm850 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Nov 21, 2019
6 years ago
Most Recent CVE
May 2, 2023
1,183 days ago
CVE Severity & Scoring
Sdm850 Firmware142 CVEs
11%
51%
38%
All CVEs353,240 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local77 (54.2%)
Network63 (44.4%)
Unknown0 (0.0%)
Physical2 (1.4%)
Adjacent Network0 (0.0%)
Attack Complexity
Low140 (98.6%)
High2 (1.4%)
Unknown0 (0.0%)
User Interaction
None142 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low77 (54.2%)
High0 (0.0%)
None65 (45.8%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (142 CVEs).
142 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-14062CRITICAL Buffer overflows while decoding setup message from Network due to lack of check of IE message length received from network in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum | Jun 22, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-10500CRITICAL While processing MT Secondary PDP request, Buffer overflow will happen due to incorrect calculation of buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, | Dec 18, 2019 | 9.8 | 31 | NO | NO |
CVE-2019-14080CRITICAL Out of bound write can happen due to lack of check of array index value while parsing SDP attribute for SAR in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdra | Jun 22, 2020 | 9.8 | 30 | NO | NO |
CVE-2019-14113CRITICAL Buffer overflow can occur in In WLAN firmware while unwraping data using CCMP cipher suite during parsing of EAPOL handshake frame in Snapdragon Auto, Snapdragon Compute, Snapdrago | Apr 16, 2020 | 9.8 | 30 | NO | NO |
CVE-2019-14095CRITICAL Buffer overflow occurs while processing LMP packet in which name length parameter exceeds value specified in BT-specification in Snapdragon Auto, Snapdragon Compute, Snapdragon Con | Mar 5, 2020 | 9.8 | 30 | NO | NO |
CVE-2019-10546CRITICAL Buffer overflow can occur in WLAN firmware while parsing beacon/probe_response frames during roaming in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Con | Mar 5, 2020 | 9.8 | 30 | NO | NO |
CVE-2019-10487CRITICAL Buffer over read can happen while parsing SMS OTA messages at transport layer if network sends un-intended values in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, S | Dec 18, 2019 | 9.8 | 30 | NO | NO |
CVE-2019-10511CRITICAL Possibility of memory overflow while decoding GSNDCP compressed mode PDU in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, | Dec 12, 2019 | 9.8 | 30 | NO | NO |
CVE-2020-3668CRITICAL u'Buffer overflow while parsing PMF enabled MCBC frames due to frame length being lesser than what is expected while parsing' in Snapdragon Auto, Snapdragon Compute, Snapdragon Con | Sep 8, 2020 | 9.8 | 29 | NO | NO |
CVE-2019-14073CRITICAL Copying RTCP messages into the output buffer without checking the destination buffer size which could lead to a remote stack overflow when processing large data or non-standard fee | Jun 22, 2020 | 9.8 | 29 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (142 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (142 CVEs).
Media Mentions
Signals from CVEs in this product scope (142 CVEs).
Top CNAs Publishing CVEs For Sdm850 Firmware
Top CWEs
Versions
No cataloged versions.