CVE-2019-10535: Buffer Overflow
Improper validation for loop variable received from firmware can lead to out of bound access in WLAN function while iterating through loop in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8053, APQ8096AU, APQ8098, MDM9640, MSM8996AU, MSM8998, QCA6574AU, QCN7605, QCS405, QCS605, SDA845, SDM845, SDX20
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10535?
CVE-2019-10535 has been classified with a medium severity rating due to improper validation leading to potential out of bounds access.
How do I fix CVE-2019-10535?
To fix CVE-2019-10535, update the affected Qualcomm firmware to the latest version that addresses the vulnerability.
What devices are affected by CVE-2019-10535?
CVE-2019-10535 affects various Qualcomm firmware versions in Snapdragon products across automotive, compute, and mobile categories.
What type of vulnerability is CVE-2019-10535?
CVE-2019-10535 is an out of bounds access vulnerability that arises from improper validation of loop variables in WLAN functions.
Is CVE-2019-10535 being actively exploited?
As of the latest updates, there are no public reports indicating active exploitation of CVE-2019-10535.