CVE-2019-10512: Out-of-bounds Read
Payload size is not checked before using it as array index in audio in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ8064, IPQ8074, MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24, SXR1130
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10512?
CVE-2019-10512 has a high severity rating due to its potential to cause denial of service and memory corruption.
How do I fix CVE-2019-10512?
To mitigate CVE-2019-10512, ensure that you apply the latest firmware updates provided by your device manufacturer.
Which devices are affected by CVE-2019-10512?
CVE-2019-10512 affects various Qualcomm Snapdragon products, including those in automotive, consumer IoT, and mobile devices.
What type of vulnerability is CVE-2019-10512?
CVE-2019-10512 is an array index vulnerability caused by improper checks on payload size.
Is there a known exploit for CVE-2019-10512?
As of now, there is no publicly known exploit for CVE-2019-10512, but it poses significant risk to affected devices.