First published: Mon Mar 02 2020(Updated: )
Possible out of bound memory access while playing a crafted clip in media player in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in SM8150
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
Qualcomm SM8150P Firmware | ||
Qualcomm SM8150 Fusion |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-14048 is considered a high severity vulnerability due to the potential for out of bound memory access.
To fix CVE-2019-14048, ensure that your affected Snapdragon devices are updated with the latest firmware that addresses the vulnerability.
CVE-2019-14048 affects Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IoT, Snapdragon Industrial IoT, Snapdragon Mobile, Snapdragon Voice & Music, and Snapdragon Wearables in the SM8150 configurations.
Yes, CVE-2019-14048 can potentially lead to system compromises if exploited through crafted media clips.
Currently, there are no known workarounds for CVE-2019-14048, so updating the affected devices is the recommended action.