CVE-2019-10556: Buffer Overflow
Missing length check before copying the data from kernel space to userspace through the copy function can lead to buffer overflow in some cases in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, MSM8909W, MSM8917, MSM8953, Nicobar, QCN7605, QCS405, QCS605, QM215, Rennell, Saipan, SC8180X, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-10556.
What is the severity of CVE-2019-10556?
The severity of CVE-2019-10556 is high.
What software is affected by CVE-2019-10556?
The software affected by CVE-2019-10556 includes Qualcomm Apq8009, Google Android, Qualcomm Msm8917, Qualcomm SDM450, and more.
How can this vulnerability be exploited?
This vulnerability can be exploited by an attacker by copying data from kernel space to userspace without performing a length check, leading to buffer overflow.
Is there a fix available for CVE-2019-10556?
Yes, a fix for CVE-2019-10556 is available. Please refer to the official reference link provided for more information.