CVE-2019-10592: Integer Overflow
Possible integer overflow while multiplying two integers of 32 bit in QDCM API of get display modes as there is no check on the maximum mode count in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCS405, QCS605, QM215, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10592?
CVE-2019-10592 has a medium severity rating due to potential impacts related to integer overflow in specific Qualcomm APIs.
How do I fix CVE-2019-10592?
To fix CVE-2019-10592, apply the patch or software update provided by Qualcomm for the affected firmware versions.
Which devices are affected by CVE-2019-10592?
CVE-2019-10592 affects various Qualcomm devices including different models of the Snapdragon, Automotive, and IoT platforms.
What type of vulnerability is CVE-2019-10592?
CVE-2019-10592 is an integer overflow vulnerability occurring during the multiplication of two 32-bit integers.
Is CVE-2019-10592 exploit serious?
Yes, CVE-2019-10592 can lead to unexpected behavior in devices, which could be leveraged by an attacker if unpatched.