CVE-2019-10540: Buffer Overflow
Buffer overflow in WLAN NAN function due to lack of check of count value received in NAN availability attribute in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ8074, MSM8996AU, QCA6174A, QCA6574AU, QCA8081, QCA9377, QCA9379, QCS404, QCS405, QCS605, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-10540?
CVE-2019-10540 is a vulnerability related to a buffer overflow in WLAN NAN function due to lack of check of count value received in NAN availability attribute.
Which software is affected by CVE-2019-10540?
Qualcomm Ipq8074 Firmware, Google Android, Qualcomm Qca6174a, Qualcomm Qca6574au, Qualcomm Qca8081 Firmware, Qualcomm Qca9377, Qualcomm Qca9379, Qualcomm Qcs404 Firmware, Qualcomm Qcs405 Firmware, Qualcomm Qcs605 Firmware, Qualcomm Sd 636 Firmware, Qualcomm Sd 665 Firmware, Qualcomm Sd 712 Firmware, Qualcomm Sd 710 Firmware, Qualcomm Sd 670 Firmware, Qualcomm Sd 730 Firmware, Google Android, Qualcomm Sd 835 Firmware, Qualcomm Sd 845 Firmware, Qualcomm Sd 850 Firmware, Qualcomm Sd 855 Firmware, Google Android, Qualcomm Sdx55, Google Android, Qualcomm Sdm459, Qualcomm Sdm630 Firmware, Qualcomm Sdm660 Firmware, Qualcomm Sxr1130 Firmware.
What is the severity of CVE-2019-10540?
The severity of CVE-2019-10540 is critical with a CVSS score of 9.8.
How can I fix CVE-2019-10540?
To fix CVE-2019-10540, it is recommended to apply the patches or updates provided by the software vendor or developer.
Where can I find more information about CVE-2019-10540?
More information about CVE-2019-10540 can be found on the official Android Security Bulletin and Qualcomm Product Security Bulletins.