First published: Mon Mar 02 2020(Updated: )
Possibility of heap-buffer-overflow during last iteration of loop while populating image version information in diag command response packet, in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8096AU, APQ8098, MDM9607, MDM9640, MSM8909W, MSM8917, MSM8953, Nicobar, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDM429, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm APQ8053 Firmware | ||
Qualcomm APQ8053 Firmware | ||
Qualcomm apq8096au firmware | ||
Qualcomm apq8096au | ||
qualcomm APQ8098 firmware | ||
qualcomm APQ8098 | ||
Qualcomm MDM9607 firmware | ||
Qualcomm MDM9607 | ||
qualcomm mdm9640 firmware | ||
qualcomm MDM9640 | ||
Qualcomm MSM8909W | ||
Qualcomm MSM8909W | ||
Qualcomm msm8917 firmware | ||
Qualcomm msm8917 | ||
Qualcomm msm8953 firmware | ||
Qualcomm msm8953 | ||
qualcomm Nicobar firmware | ||
qualcomm Nicobar | ||
Qualcomm QCS605 firmware | ||
Qualcomm QCS605 | ||
Qualcomm qm215 firmware | ||
Qualcomm qm215 | ||
qualcomm Rennell firmware | ||
qualcomm Rennell | ||
Qualcomm Sa6155p Firmware | ||
qualcomm SA6155P | ||
qualcomm Saipan firmware | ||
qualcomm Saipan | ||
qualcomm SDA660 firmware | ||
qualcomm SDA660 | ||
qualcomm SDM429 firmware | ||
qualcomm SDM429 | ||
qualcomm SDM439 firmware | ||
qualcomm SDM439 | ||
qualcomm SDM450 firmware | ||
Qualcomm SDM450 | ||
qualcomm SDM632 firmware | ||
qualcomm SDM632 | ||
qualcomm sdm670 firmware | ||
qualcomm sdm670 | ||
qualcomm sdm710 firmware | ||
qualcomm sdm710 | ||
qualcomm SDM845 firmware | ||
qualcomm SDM845 | ||
Qualcomm SM6150 | ||
Qualcomm SM6150 Firmware | ||
Qualcomm SM7150 Firmware | ||
qualcomm SM7150 firmware | ||
qualcomm SM8150 firmware | ||
qualcomm SM8150 | ||
qualcomm SM8250 firmware | ||
Qualcomm SM8250 | ||
Qualcomm SXR1130 Firmware | ||
Qualcomm SXR1130 | ||
qualcomm SXR2130 firmware | ||
qualcomm SXR2130 | ||
Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-10604 is classified as a high severity vulnerability due to the possibility of a heap-buffer-overflow.
Fixing CVE-2019-10604 involves applying security patches provided by Qualcomm for the affected firmware.
CVE-2019-10604 affects a wide range of Snapdragon platforms including APQ8053, APQ8096AU, APQ8098, MDM9607, and various others.
Yes, CVE-2019-10604 can potentially allow an attacker to execute arbitrary code on the affected devices.
CVE-2019-10604 is not specific to Android but affects Qualcomm's components used in various systems including Android devices.