CVE-2019-10604: High severity android vulnerability
Possibility of heap-buffer-overflow during last iteration of loop while populating image version information in diag command response packet, in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8096AU, APQ8098, MDM9607, MDM9640, MSM8909W, MSM8917, MSM8953, Nicobar, QCS605, QM215, Rennell, SA6155P, Saipan, SDA660, SDM429, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10604?
CVE-2019-10604 is classified as a high severity vulnerability due to the possibility of a heap-buffer-overflow.
How do I fix CVE-2019-10604?
Fixing CVE-2019-10604 involves applying security patches provided by Qualcomm for the affected firmware.
What devices are affected by CVE-2019-10604?
CVE-2019-10604 affects a wide range of Snapdragon platforms including APQ8053, APQ8096AU, APQ8098, MDM9607, and various others.
Can CVE-2019-10604 lead to remote code execution?
Yes, CVE-2019-10604 can potentially allow an attacker to execute arbitrary code on the affected devices.
Is CVE-2019-10604 specific to Android?
CVE-2019-10604 is not specific to Android but affects Qualcomm's components used in various systems including Android devices.