CVE-2019-10495: Input Validation
Arbitrary buffer write issue while processing sequence header during HEVC or AVC encoding. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8909W, MSM8996AU, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, SnapdragonHighMed2016, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2019-10495.
What is the severity of CVE-2019-10495?
The severity of CVE-2019-10495 is high.
Which software or products are affected by CVE-2019-10495?
The affected software/products include Google Android, Qualcomm MSM8909W, Qualcomm MSM8996AU, Qualcomm QCS605 Firmware, Qualcomm Qualcomm 215, Qualcomm SD 210 Firmware, Qualcomm SD 212 Firmware, Qualcomm SD 205 Firmware, Qualcomm SD 425 Firmware, and others.
How can I fix CVE-2019-10495?
To fix CVE-2019-10495, it is recommended to apply the patches provided by the vendors or follow the mitigation steps mentioned in the relevant security bulletin.
Where can I find more information about CVE-2019-10495?
You can find more information about CVE-2019-10495 in the Android Security Bulletin for September 2019.