|
219551
|
7.8 |
HIGH
Local
|
google
|
android
|
In isSeparateProfileChallengeAllowed of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check. This could lead to local escalation of privilege, wi…
|
CWE-862
Missing Authorization
|
CVE-2019-2092
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219552
|
7.8 |
HIGH
Local
|
google
|
android
|
In GetPermittedAccessibilityServicesForUser of DevicePolicyManagerService.java, there is a possible permissions bypass due to a missing permission check. This could lead to local escalation of privil…
|
CWE-862
Missing Authorization
|
CVE-2019-2091
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219553
|
7.8 |
HIGH
Local
|
google
|
android
|
In isPackageDeviceAdminOnAnyUser of PackageManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, with no ad…
|
CWE-862
Missing Authorization
|
CVE-2019-2090
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219554
|
7.8 |
HIGH
Local
|
qualcomm
|
qcs605_firmware sd_675_firmware sd_712_firmware sd_710_firmware sd_670_firmware sd_835_firmware sd_845_firmware sd_850_firmware sd_855_firmware sd_8cx_firmware sm7150_fi…
|
Kernel can write to arbitrary memory address passed by user while freeing/stopping a thread in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in QCS605, SD …
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2019-2250
|
2024-11-21 13:40 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219555
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware …
|
Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2019-2248
|
2024-11-21 13:40 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219556
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware sd_210_firmware sd_212_firmware
|
Possibility of double free issue while running multiple instances of smp2p test because of proper protection is missing while using global variable in Snapdragon Auto, Snapdragon Compute, Snapdragon …
|
CWE-415
Double Free
|
CVE-2019-2247
|
2024-11-21 13:40 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219557
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd…
|
Possible integer underflow can happen when calculating length of elementary stream map from invalid packet length which is later used to read from input buffer in Snapdragon Auto, Snapdragon Compute,…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2019-2245
|
2024-11-21 13:40 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219558
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9206_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd…
|
Possible integer underflow can happen when calculating length of elementary stream info from invalid section length which is later used to read from input buffer in Snapdragon Auto, Snapdragon Comput…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2019-2244
|
2024-11-21 13:40 |
2019-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219559
|
7.8 |
HIGH
Local
|
google canonical
|
android ubuntu_linux
|
In the seccomp implementation prior to kernel version 4.8, there is a possible seccomp bypass due to seccomp policies that allow the use of ptrace. This could lead to local escalation of privilege wi…
|
NVD-CWE-noinfo
|
CVE-2019-2054
|
2024-11-21 13:40 |
2019-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219560
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In wnm_parse_neighbor_report_elem of wnm_sta.c, there is a possible out-of-bounds read due to missing bounds check. This could lead to local information disclosure with no additional execution privil…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2053
|
2024-11-21 13:40 |
2019-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|