CVE-2019-10542: Critical severity qualcomm mdm9150 firmware vulnerability
Buffer over-read may occur when downloading a corrupted firmware file that has chunk length in header which doesnt match the contents in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9150, MDM9206, MDM9607, MDM9615, MDM9640, MDM9650, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 600, SD 625, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 845 / SD 850, SDX20
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-10542?
CVE-2019-10542 is a vulnerability that can lead to buffer over-read when downloading a corrupted firmware file.
What software is affected by CVE-2019-10542?
CVE-2019-10542 affects Qualcomm MDM9150 Firmware, Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IoT, Snapdragon Industrial IoT, Snapdragon Mobile, and Snapdragon Voice & Music.
What is the severity of CVE-2019-10542?
The severity of CVE-2019-10542 is critical, with a severity value of 9.8.
How can I fix CVE-2019-10542?
To fix CVE-2019-10542, it is recommended to update to the latest firmware version provided by Qualcomm or install the necessary security patches from the software vendor.
Where can I find more information about CVE-2019-10542?
You can find more information about CVE-2019-10542 on the official Android Security Bulletin website: https://source.android.com/security/bulletin/