|
219301
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm915_firmware mdm9205_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware
|
Buffer over read can happen while parsing downlink session management OTA messages if network sends un-intended values in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Indu…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2271
|
2024-11-21 13:40 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219302
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware mdm9650_firmware msm8996au_firmwa…
|
Possible OOB read issue in P2P action frames while handling WLAN management frame in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2268
|
2024-11-21 13:40 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219303
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8053_firmware ipq4019_firmware ipq8064_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware msm8909_firmware msm8909w_firmware nicobar_firmware qca9980_firmware<…
|
Possible double free issue in kernel while handling the camera sensor and its sub modules power sequence in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdr…
|
CWE-415
Double Free
|
CVE-2019-2266
|
2024-11-21 13:40 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219304
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8016_firmware apq8096au_firmware apq8098_firmware mdm9205_firmware msm8996au_firmware msm8998_firmware nicobar_firmware qcs405_firmware qcs605_firmware sa6155p_firmware<…
|
If a bitmap file is loaded from any un-authenticated source, there is a possibility that the bitmap can potentially cause stack buffer overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Con…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2251
|
2024-11-21 13:40 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219305
|
7.8 |
HIGH
Local
|
google
|
android
|
In load_logging_config of qmi_vs_service.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2210
|
2024-11-21 13:40 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219306
|
6.8 |
MEDIUM
Physics
|
google
|
android
|
In getUserCount and getCount of UserSwitcherController.java, there is possible new user creation due to a logic error. This could lead to local escalation of privilege for an attacker who has physica…
|
NVD-CWE-noinfo
|
CVE-2019-2233
|
2024-11-21 13:40 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219307
|
7.8 |
HIGH
Local
|
google canonical
|
android ubuntu_linux
|
In binder_transaction of binder.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges need…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2214
|
2024-11-21 13:40 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219308
|
7.4 |
HIGH
Local
|
google
|
android
|
In binder_free_transaction of binder.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. Us…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2019-2213
|
2024-11-21 13:40 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219309
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In poisson_distribution of random, there is an out of bounds read. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for e…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2212
|
2024-11-21 13:40 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219310
|
7.5 |
HIGH
Network
|
google
|
android
|
In createProjectionMapForQuery of TvProvider.java, there is possible SQL injection. This could lead to local information disclosure with no additional execution privileges needed. User interaction is…
|
CWE-89
SQL Injection
|
CVE-2019-2211
|
2024-11-21 13:40 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|