CVE-2019-2272: Buffer Overflow
Buffer overflow can occur in display function due to lack of validation of header block size set by user. in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9206, MDM9607, MDM9650, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 615/16/SD 415, SD 625, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 820A, SD 845 / SD 850, SDM660, SDX20
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-2272?
The severity of CVE-2019-2272 is 7.8 (high).
Which software versions are affected by CVE-2019-2272?
Qualcomm Mdm9206 Firmware, Qualcomm Mdm9650 Firmware, and Qualcomm Sd 210 Firmware are affected by CVE-2019-2272.
How can I fix CVE-2019-2272?
Apply the latest firmware update provided by Qualcomm to fix CVE-2019-2272.
Is Qualcomm Mdm9607 vulnerable to CVE-2019-2272?
No, Qualcomm Mdm9607 is not vulnerable to CVE-2019-2272.
What is the Common Weakness Enumeration (CWE) for CVE-2019-2272?
The Common Weakness Enumeration (CWE) for CVE-2019-2272 is CWE-119 (Improper Restriction of Operations within the Bounds of a Memory Buffer).