CVE-2019-10505: Critical severity android vulnerability
Out of bound access while processing a non-standard IE measurement request with length crossing past the size of frame in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCS405, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 650/52, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10505?
The severity of CVE-2019-10505 is classified as high due to its potential to allow out-of-bounds access.
How do I fix CVE-2019-10505?
To fix CVE-2019-10505, ensure that all affected devices are updated to the latest firmware provided by Qualcomm.
What devices are affected by CVE-2019-10505?
CVE-2019-10505 affects various Qualcomm Snapdragon devices, including models from the MDM, MSM, and SD series.
What type of vulnerability is CVE-2019-10505?
CVE-2019-10505 is an out-of-bounds access vulnerability that can occur during the processing of non-standard Internet Engineering (IE) measurement requests.
Can CVE-2019-10505 lead to remote code execution?
Yes, CVE-2019-10505 could potentially lead to remote code execution due to its nature of allowing out-of-bounds memory access.