CVE-2019-10525: Buffer Overflow
Buffer overflow during SIB read when network configures complete sib list along with first and last segment of other SIB in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, MDM9150, MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCM2150, QCS605, QM215, SC8180X, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10525?
CVE-2019-10525 has a severity rating of critical due to the buffer overflow vulnerability it presents.
How do I fix CVE-2019-10525?
To mitigate CVE-2019-10525, it is recommended to update the affected Qualcomm firmware to the latest version provided by the vendor.
What products are affected by CVE-2019-10525?
CVE-2019-10525 affects various Qualcomm products including Snapdragon Auto, Snapdragon Mobile, and multiple firmware versions.
Can CVE-2019-10525 lead to remote code execution?
Yes, CVE-2019-10525 could potentially allow an attacker to execute arbitrary code remotely due to the buffer overflow issue.
Is CVE-2019-10525 a hardware or software vulnerability?
CVE-2019-10525 is a software vulnerability present in the firmware of Qualcomm devices.