CVE-2019-10555: Buffer Overflow
Buffer overflow can occur due to usage of wrong datatype and missing length check before copying into buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCN7605, QCS405, QCS605, QM215, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10555?
CVE-2019-10555 has a high severity level due to potential buffer overflow vulnerabilities that can lead to code execution.
How do I fix CVE-2019-10555?
To fix CVE-2019-10555, upgrade the affected Qualcomm firmware to the latest version provided by Qualcomm.
Which devices are affected by CVE-2019-10555?
CVE-2019-10555 affects various Qualcomm Snapdragon devices across categories like automotive, compute, and mobile.
What are the potential impacts of CVE-2019-10555?
Exploiting CVE-2019-10555 may allow attackers to execute arbitrary code, leading to unauthorized access and control of affected devices.
Is there a workaround for CVE-2019-10555?
There are no official workarounds for CVE-2019-10555; the best mitigation is ensuring that affected devices are updated immediately.