CVE-2019-2248: Buffer Overflow
Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 650/52, SD 820, SD 820A, SD 845 / SD 850, SDM439, SDM660, SDX20
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-2248?
CVE-2019-2248 is a vulnerability that can result in a buffer overflow if an invalid header attempts to overwrite the existing buffer allocation in Qualcomm Snapdragon devices.
What software is affected by CVE-2019-2248?
CVE-2019-2248 affects Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, and Google Android.
What is the severity of CVE-2019-2248?
The severity of CVE-2019-2248 is high, with a CVSS score of 7.8.
How does CVE-2019-2248 work?
CVE-2019-2248 works by allowing an attacker to trigger a buffer overflow by sending an invalid header that attempts to overwrite the existing buffer allocation.
Is there a fix for CVE-2019-2248?
Yes, to fix CVE-2019-2248, it is recommended to apply the patches and updates provided by Qualcomm or the respective device manufacturers.