|
221421
|
9.8 |
CRITICAL
Network
|
qualcomm
|
msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_43…
|
Resource allocation error while playing the video whose dimensions are more than supported dimension in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdrag…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-2259
|
2024-11-21 13:40 |
2019-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221422
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9150_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs405_firmware qcs605_firmware sd_210_firmware sd_212_firmware sd_205_firmware s…
|
Wrong permissions in configuration file can lead to unauthorized permission in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2019-2257
|
2024-11-21 13:40 |
2019-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221423
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_427_firmware sd_4…
|
An unprivileged user can craft a bitstream such that the payload encoded in the bitstream gains code execution in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT…
|
NVD-CWE-noinfo
|
CVE-2019-2256
|
2024-11-21 13:40 |
2019-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221424
|
9.8 |
CRITICAL
Network
|
qualcomm
|
msm8909w_firmware msm8996au_firmware qcs605_firmware qm215_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_425_firmware sd_427_firmware sd_430_firmware sd_43…
|
An unprivileged user can craft a bitstream such that the payload encoded in the bitstream gains code execution in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT…
|
NVD-CWE-noinfo
|
CVE-2019-2255
|
2024-11-21 13:40 |
2019-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221425
|
8.8 |
HIGH
Adjacent
|
google
|
android
|
In the Bluetooth Low Energy (BLE) specification, there is a provided example Long Term Key (LTK). If a BLE device were to use this as a hardcoded LTK, it is theoretically possible for a proximate att…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2019-2102
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221426
|
5.5 |
MEDIUM
Local
|
google debian canonical
|
android debian_linux ubuntu_linux
|
In uvc_parse_standard_control of uvc_driver.c, there is a possible out-of-bound read due to improper input validation. This could lead to local information disclosure with no additional execution pri…
|
CWE-125
Out-of-bounds Read
|
CVE-2019-2101
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221427
|
7.8 |
HIGH
Local
|
google
|
android
|
In nfa_rw_store_ndef_rx_buf of nfa_rw_act.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privi…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2099
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221428
|
7.8 |
HIGH
Local
|
google
|
android
|
In areNotificationsEnabledForPackage of NotificationManagerService.java, there is a possible permissions bypass due to a missing permissions check. This could lead to local escalation of privilege, w…
|
CWE-862
Missing Authorization
|
CVE-2019-2098
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221429
|
9.8 |
CRITICAL
Network
|
google
|
android
|
In HAliasAnalyzer.Query of hydrogen-alias-analysis.h, there is possible memory corruption due to type confusion. This could lead to remote code execution from a malicious proxy configuration, with no…
|
CWE-843
Type Confusion
|
CVE-2019-2097
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
221430
|
7.8 |
HIGH
Local
|
google
|
android
|
In EffectRelease of EffectBundle.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of privilege in the audio server with no additional execution pri…
|
CWE-415
Double Free
|
CVE-2019-2096
|
2024-11-21 13:40 |
2019-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|