CVE-2019-10489: Null Pointer Dereference
Possible null-pointer dereference can occur while parsing avi clip during copy in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9206, MDM9607, MSM8909W, MSM8996AU, QCA6574AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 600, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20
Affected Software
Event History
Frequently Asked Questions
What are the potential impacts of CVE-2019-10489?
CVE-2019-10489 may allow a null-pointer dereference during AVI clip parsing, potentially leading to system instability or crashes.
Which devices are affected by CVE-2019-10489?
CVE-2019-10489 affects various Snapdragon devices, including those in Automotive, Compute, Consumer IoT, and more.
How can I mitigate the risks associated with CVE-2019-10489?
To mitigate CVE-2019-10489, ensure that your device is updated with the latest firmware from Qualcomm or the device manufacturer.
What severity level is assigned to CVE-2019-10489?
CVE-2019-10489 is assigned a medium severity level, indicating it poses a moderate risk to affected systems.
Is there a recommended fix for CVE-2019-10489?
The recommended fix for CVE-2019-10489 is to apply the latest security updates provided by your device's manufacturer.