CVE-2019-10491: High severity android vulnerability
ADSP can be compromised since its a general-purpose CPU processing untrusted data in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ8064, IPQ8074, MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10491?
CVE-2019-10491 has a severity rating of high due to the potential for exploitation leading to unauthorized access or execution of arbitrary code.
How do I fix CVE-2019-10491?
To fix CVE-2019-10491, apply the appropriate security updates provided by Qualcomm or your device manufacturer.
What are the affected products for CVE-2019-10491?
CVE-2019-10491 affects various devices powered by Qualcomm Snapdragon processors, including those used in mobile, automotive, and IoT applications.
Can I mitigate the risk of CVE-2019-10491?
Mitigation steps for CVE-2019-10491 include ensuring your device firmware is up to date and avoiding the use of untrusted applications.
Is CVE-2019-10491 related to audio processing vulnerabilities?
Yes, CVE-2019-10491 relates to vulnerabilities in the audio processing components of Qualcomm Snapdragon chips that handle untrusted data.