|
226491
|
8.8 |
HIGH
Network
|
google
|
android
|
In PV_DecodePredictedIntraDC of dec_pred_intra_dc.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution pri…
|
CWE-787
Out-of-bounds Write
|
CVE-2019-2184
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226492
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In generateServicesMap of RegisteredServicesCache.java, there is a possible account protection bypass due to a caching optimization. This could lead to local information disclosure with no additional…
|
CWE-200
Information Exposure
|
CVE-2019-2183
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226493
|
7.8 |
HIGH
Local
|
google
|
android
|
In startActivityMayWait of ActivityStarter.java, there is a possible incorrect Activity launch due to an incorrect permission check. This could lead to local escalation of privilege with no additiona…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-2173
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226494
|
7.8 |
HIGH
Local
|
google
|
android
|
In the default privileges of NFC, there is a possible local bypass of user interaction requirements on package installation due to a default permission. This could lead to local escalation of privile…
|
CWE-276
Incorrect Default Permissions
|
CVE-2019-2114
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226495
|
5.5 |
MEDIUM
Local
|
google
|
android
|
In ScreenRotationAnimation of ScreenRotationAnimation.java, there is a possible capture of a secure screen due to a missing permission check. This could lead to local information disclosure with no a…
|
CWE-862
Missing Authorization
|
CVE-2019-2110
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226496
|
7.8 |
HIGH
Local
|
google debian canonical netapp huawei
|
android debian_linux ubuntu_linux cloud_backup steelstore_cloud_integrated_storage service_processor data_availability_services solidfire hci_management_node solidfire_base…
|
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require…
|
CWE-416
Use After Free
|
CVE-2019-2215
|
2024-11-21 13:40 |
2019-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226497
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9150_firmware mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs405_firmware qcs605_firmware qualcomm_215_firmw…
|
Buffer overflow when the audio buffer size provided by user is larger than the maximum allowable audio buffer size. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industr…
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-2341
|
2024-11-21 13:40 |
2019-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226498
|
7.8 |
HIGH
Local
|
qualcomm
|
mdm9150_firmware mdm9607_firmware mdm9650_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware qualcomm_215_firmware sd_210_firmware sd_212_firmware sd_205_firmwar…
|
Buffer overflow due to improper validation of buffer size while IPA driver processing to perform read operation in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial …
|
CWE-120
Classic Buffer Overflow
|
CVE-2019-2333
|
2024-11-21 13:40 |
2019-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226499
|
9.8 |
CRITICAL
Network
|
qualcomm
|
mdm9205_firmware mdm9206_firmware mdm9607_firmware mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9655_firmware msm8909w_firmware msm8996au_firmware qcs605_firmware…
|
Usage of hard-coded magic number for calculating heap guard bytes can allow users to corrupt heap blocks without heap algorithm knowledge in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivi…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2019-2294
|
2024-11-21 13:40 |
2019-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226500
|
7.0 |
HIGH
Local
|
qualcomm
|
msm8909w_firmware qcs405_firmware qcs605_firmware qualcomm_215_firmware sd_425_firmware sd_439_firmware sd_429_firmware sd_450_firmware sd_625_firmware sd_632_firmware s…
|
Possible use-after-free issue due to a race condition while calling camera ioctl concurrently in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon …
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2019-2284
|
2024-11-21 13:40 |
2019-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|