|
219271
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096_firmware apq8096au_firmware apq8098_firmware ipq4019_firmware ipq8074_firmware mdm9150_firmware mdm9205_firmware<…
|
Incorrect length used while validating the qsee log buffer sent from HLOS which could then lead to remap conflict in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer …
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-2321
|
2024-11-21 13:40 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219272
|
9.8 |
CRITICAL
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm9150_firmware mdm9205_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware<…
|
Possible out of bounds write in a MT SMS/SS scenario due to improper validation of array index in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon I…
|
CWE-787 CWE-129
Out-of-bounds Write Improper Validation of Array Index
|
CVE-2019-2320
|
2024-11-21 13:40 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219273
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9205_firmware qcs404_firmware qcs605_firmware sda845_firmware sdm670_firmware sdm710_firmware sdm845_firmware sdm850_firmware sm6150_firmware sm7150_firmware sm8150_f…
|
HLOS could corrupt CPZ page table memory for S1 managed VMs in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Sna…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2319
|
2024-11-21 13:40 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219274
|
7.5 |
HIGH
Network
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096au_firmware apq8098_firmware mdm9206_firmware mdm9207c_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware…
|
Out of bound read would occur while trying to read action category and action ID without validating the action length of the Rx Frame body in Snapdragon Auto, Snapdragon Consumer Electronics Connecti…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2310
|
2024-11-21 13:40 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219275
|
7.8 |
HIGH
Local
|
qualcomm
|
apq8009_firmware apq8017_firmware apq8053_firmware apq8096_firmware apq8096au_firmware apq8098_firmware ipq8074_firmware mdm9150_firmware mdm9206_firmware mdm9607_firmware<…
|
Out of bound write in TZ while copying the secure dump structure on HLOS provided buffer as a part of memory dump in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer …
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-2288
|
2024-11-21 13:40 |
2019-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219276
|
7.5 |
HIGH
Network
|
google
|
android
|
In handleRun of TextLine.java, there is a possible application crash due to improper input validation. This could lead to remote denial of service when processing Unicode with no additional execution…
|
CWE-20 CWE-682
Improper Input Validation Incorrect Calculation
|
CVE-2019-2232
|
2024-11-21 13:40 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219277
|
4.4 |
MEDIUM
Local
|
google
|
android
|
In Blob::Blob of blob.cpp, there is a possible unencrypted master key due to improper input validation. This could lead to local information disclosure with System execution privileges needed. User i…
|
CWE-311
Missing Encryption of Sensitive Data
|
CVE-2019-2231
|
2024-11-21 13:40 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219278
|
7.5 |
HIGH
Network
|
google
|
android
|
In nfcManager_routeAid and nfcManager_unrouteAid of NativeNfcManager.cpp, there is possible memory reuse due to a use after free. This could lead to remote information disclosure with no additional e…
|
CWE-416
Use After Free
|
CVE-2019-2230
|
2024-11-21 13:40 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219279
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In updateWidget of BaseWidgetProvider.java, there is a possible leak of user data due to a missing permission check. This could lead to local information disclosure with no additional execution privi…
|
CWE-862
Missing Authorization
|
CVE-2019-2229
|
2024-11-21 13:40 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219280
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution …
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2228
|
2024-11-21 13:40 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|