CVE-2019-10608
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Information disclosure issue occurs as there is no binding between the secure keypad session and the secure display session that allows user to take control of the REE to stop the secure keypad session and read the keypad input. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, MSM8905, MSM8909
Un problema de divulgación de información ocurre ya que no existe una vinculación entre la sesión de teclado seguro y la sesión de pantalla segura lo que permite al usuario tomar el control de la REE para detener la sesión de teclado seguro y leer la entrada de teclado en los productos Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking en versiones APQ8009, MSM8905, MSM8909.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-03-29 CVE Reserved
- 2020-04-16 CVE Published
- 2023-03-08 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.qualcomm.com/company/product-security/bulletins/april-2020-bulletin | 2020-08-24 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Qualcomm Search vendor "Qualcomm" | Apq8009 Firmware Search vendor "Qualcomm" for product "Apq8009 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Apq8009 Search vendor "Qualcomm" for product "Apq8009" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Msm8905 Firmware Search vendor "Qualcomm" for product "Msm8905 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Msm8905 Search vendor "Qualcomm" for product "Msm8905" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Msm8909 Firmware Search vendor "Qualcomm" for product "Msm8909 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Msm8909 Search vendor "Qualcomm" for product "Msm8909" | - | - |
Safe
|