First published: Tue Sep 03 2019(Updated: )
Thread start can cause invalid memory writes to arbitrary memory location since the argument is passed by user to kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9205, MDM9640, MSM8996AU, QCA6574, QCS605, Qualcomm 215, SD 425, SD 427, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, SDX24, Snapdragon_High_Med_2016, SXR1130
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Google Android | ||
Qualcomm Mdm9640 Firmware | ||
Qualcomm Mdm9640 | ||
Google Android | ||
Qualcomm Msm8996au | ||
Qualcomm Qca6574 Firmware | ||
Qualcomm Qca6574 | ||
Qualcomm Qcs605 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Qualcomm 215 | ||
Qualcomm Sd 425 Firmware | ||
Qualcomm Sd 425 | ||
Google Android | ||
Google Android | ||
Google Android | ||
Qualcomm Sd 435 | ||
Qualcomm Sd 439 Firmware | ||
Qualcomm Sd 439 | ||
Qualcomm Sd 429 Firmware | ||
Qualcomm Sd 429 | ||
Qualcomm Sd 450 Firmware | ||
Qualcomm Sd 450 | ||
Qualcomm Sd 625 Firmware | ||
Qualcomm Sd 625 | ||
Qualcomm Sd 636 Firmware | ||
Qualcomm Sd 636 | ||
Qualcomm Sd 665 Firmware | ||
Qualcomm Sd 665 | ||
Google Android | ||
Qualcomm Sd 675 | ||
Qualcomm Sd 712 Firmware | ||
Qualcomm Sd 712 | ||
Qualcomm Sd 710 Firmware | ||
Qualcomm Sd 710 | ||
Qualcomm Sd 670 Firmware | ||
Qualcomm Sd 670 | ||
Qualcomm Sd 730 Firmware | ||
Qualcomm Sd 730 | ||
Google Android | ||
Google Android | ||
Qualcomm Sd 835 Firmware | ||
Qualcomm Sd 835 | ||
Qualcomm Sd 845 Firmware | ||
Qualcomm Sd 845 | ||
Qualcomm Sd 850 Firmware | ||
Qualcomm Sd 850 | ||
Qualcomm Sd 855 Firmware | ||
Qualcomm Sd 855 | ||
Google Android | ||
Qualcomm Sd 8cx | ||
Google Android | ||
Google Android | ||
Qualcomm Sdm439 Firmware | ||
Qualcomm Sdm439 | ||
Qualcomm Sdm630 Firmware | ||
Qualcomm Sdm630 | ||
Qualcomm Sdm660 Firmware | ||
Qualcomm Sdm660 | ||
Qualcomm Sdx24 Firmware | ||
Google Android | ||
Google Android | ||
Qualcomm Snapdragon High Med 2016 | ||
Qualcomm Sxr1130 Firmware | ||
Qualcomm Sxr1130 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-2246 is a vulnerability that allows for invalid memory writes to arbitrary memory locations in Qualcomm Snapdragon devices running Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, and Snapdragon Mobile.
CVE-2019-2246 affects Google Android devices running Qualcomm Snapdragon processors, allowing for invalid memory writes to arbitrary memory locations.
CVE-2019-2246 has a severity rating of high (7/10).
Google has released security patches for CVE-2019-2246, and affected users are advised to update their devices with the latest patches provided by their device manufacturer.
More information about CVE-2019-2246 can be found in the Android Security Bulletin for September 2019.