CVE-2019-2240: Medium severity Google Android vulnerability
While sending the rendered surface content to the screen, Error handling is not properly checked results in an unpredictable behaviour in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ4019, IPQ8064, IPQ8074, MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA8081, QCA9377, QCA9379, QCA9531, QCA9880, QCA9886, QCA9980, QCN5502, QCS404, QCS605, SD 210/SD 212/SD 205, SD 425, SD 600, SD 625, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660, SDX20, SDX24, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-2240?
The severity of CVE-2019-2240 has been rated as high due to potential unpredictable behavior in affected devices.
What devices are affected by CVE-2019-2240?
CVE-2019-2240 affects various Qualcomm Snapdragon platforms including smartphone and IoT device firmware.
How do I fix CVE-2019-2240?
To address CVE-2019-2240, it is recommended to update the firmware to the latest version provided by Qualcomm.
What type of vulnerability is CVE-2019-2240?
CVE-2019-2240 is a vulnerability related to improper error handling in rendering surface content.
Are there any known exploits for CVE-2019-2240?
Currently, there are no public exploits reported for CVE-2019-2240, but it is advisable to mitigate the risk through timely updates.