CVE-2019-10508: Input Validation
Lack of input validation for data received from user space can lead to OOB access in WLAN in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, SD 210/SD 212/SD 205, SD 425, SD 430, SD 600, SD 615/16/SD 415, SD 625, SD 632, SD 650/52, SD 820A, SDX20
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10508?
The severity of CVE-2019-10508 is high with a severity value of 7.8.
How can I fix CVE-2019-10508?
To fix CVE-2019-10508, it is recommended to apply the latest security patches provided by the software vendor.
Which software is affected by CVE-2019-10508?
CVE-2019-10508 affects Qualcomm Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150.
What is the Common Weakness Enumeration (CWE) ID for CVE-2019-10508?
The Common Weakness Enumeration (CWE) IDs for CVE-2019-10508 are CWE-20 and CWE-120.
Where can I find more information about CVE-2019-10508?
You can find more information about CVE-2019-10508 in the August 2019 Code Aurora Security Bulletin.