Lack of checking a variable received from driver and populating in Firmware data structure leads to buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8909W, MSM8996AU, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130
References
Link Resource
https://source.android.com/security/bulletin/ Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: qualcomm

Published: 2019-11-06T17:11:16

Updated: 2019-11-06T17:11:16

Reserved: 2019-03-29T00:00:00


Link: CVE-2019-10496

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-11-06T17:15:11.910

Modified: 2019-11-07T16:20:28.937


Link: CVE-2019-10496

JSON object: View

cve-icon Redhat Information

No data.

CWE