|
225011
|
5.5 |
MEDIUM
Local
|
qualcomm
|
mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs404_firmware qcs605_firmware qualcomm_215_firmw…
|
While deserializing any key blob during key operations, buffer overflow could occur exposing partial key information if any key operations are invoked(Depends on CVE-2018-13907) in Snapdragon Auto, S…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-2275
|
2024-11-21 13:40 |
2019-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225012
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9150_firmware mdm9607_firmware mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmwar…
|
Improper validation of array index causes OOB write and then leads to memory corruption in MMCP in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon …
|
CWE-787 CWE-129
Out-of-bounds Write Improper Validation of Array Index
|
CVE-2019-2258
|
2024-11-21 13:40 |
2019-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225013
|
9.8 |
CRITICAL
Network
|
qualcomm
|
ipq8074_firmware mdm9205_firmware mdm9650_firmware qca8081_firmware qcs605_firmware sd_427_firmware sd_435_firmware sd_450_firmware sd_625_firmware sd_636_firmware sd_66…
|
Kernel can do a memory read from arbitrary address passed by user during execution of a syscall in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon …
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2249
|
2024-11-21 13:40 |
2019-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225014
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9205_firmware mdm9640_firmware msm8996au_firmware qca6574_firmware qcs605_firmware qualcomm_215_firmware sd_425_firmware sd_427_firmware sd_435_firmware sd_439_firmware<…
|
Thread start can cause invalid memory writes to arbitrary memory location since the argument is passed by user to kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Co…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2246
|
2024-11-21 13:40 |
2019-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225015
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In nfc_ncif_decode_rf_params of nfc_ncif.cc, there is a possible out of bounds read due to an integer underflow. This could lead to local information disclosure with no additional execution privilege…
|
CWE-125 CWE-191
Out-of-bounds Read Integer Underflow (Wrap or Wraparound)
|
CVE-2019-2187
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225016
|
8.8 |
HIGH
Network
|
google
|
android
|
In GetMBheader of combined_decode.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. …
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2186
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225017
|
8.8 |
HIGH
Network
|
google
|
android
|
In VlcDequantH263IntraBlock_SH of vlc_dequant.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privile…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2185
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225018
|
8.8 |
HIGH
Network
|
google
|
android
|
In PV_DecodePredictedIntraDC of dec_pred_intra_dc.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution pri…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2184
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225019
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In generateServicesMap of RegisteredServicesCache.java, there is a possible account protection bypass due to a caching optimization. This could lead to local information disclosure with no additional…
|
CWE-200
Information Exposure
|
CVE-2019-2183
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225020
|
7.8 |
HIGH
Local
|
google
|
android
|
In startActivityMayWait of ActivityStarter.java, there is a possible incorrect Activity launch due to an incorrect permission check. This could lead to local escalation of privilege with no additiona…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-2173
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|