CVE-2019-10606: High severity Google Android vulnerability
Out-of-bound access will occur in USB driver due to lack of check to validate the frame size passed by user in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MDM9607, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, QCS605, SDX24
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10606?
CVE-2019-10606 has been rated as a critical severity vulnerability.
How do I fix CVE-2019-10606?
To fix CVE-2019-10606, you should update the firmware of the affected Qualcomm devices to the latest version.
Which devices are affected by CVE-2019-10606?
CVE-2019-10606 affects various Qualcomm Snapdragon devices including MDM9607, MSM8909W, and MSM8917.
What type of vulnerability is CVE-2019-10606?
CVE-2019-10606 is an out-of-bounds access vulnerability in the USB driver.
What impacts can CVE-2019-10606 cause?
CVE-2019-10606 can lead to potential data exposure and system instability due to improper validation of input.