CVE-2019-2249: Input Validation
Kernel can do a memory read from arbitrary address passed by user during execution of a syscall in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in IPQ8074, MDM9205, MDM9650, QCA8081, QCS605, SD 427, SD 435, SD 450, SD 625, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM630, SDM660, SDX20, SnapdragonHighMed2016, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-2249?
CVE-2019-2249 has a high severity rating due to the potential for arbitrary memory read vulnerabilities in affected Qualcomm products.
How do I fix CVE-2019-2249?
To fix CVE-2019-2249, update the affected Qualcomm devices to the latest firmware version provided by your manufacturer.
Which devices are affected by CVE-2019-2249?
CVE-2019-2249 affects various Qualcomm Snapdragon products including smartphones and IoT devices.
What type of vulnerability is CVE-2019-2249?
CVE-2019-2249 is a memory handling vulnerability that allows unauthorized access to arbitrary memory locations.
Is CVE-2019-2249 actively being exploited?
There is currently no public information indicating that CVE-2019-2249 is being actively exploited in the wild.