CVE-2019-2284: Use After Free
Possible use-after-free issue due to a race condition while calling camera ioctl concurrently in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8909W, QCS405, QCS605, Qualcomm 215, SD 425, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 845 / SD 850, SD 855, SDM439, SDX24
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-2284?
CVE-2019-2284 is a vulnerability related to a possible use-after-free issue due to a race condition while calling camera ioctl concurrently in multiple Qualcomm Snapdragon devices.
Which devices are affected by CVE-2019-2284?
CVE-2019-2284 affects multiple Qualcomm Snapdragon devices including MSM8909W, QCS405, QCS605, Qualcomm 215, SD 425, SD 439, and more.
What is the severity of CVE-2019-2284?
CVE-2019-2284 has a severity value of 7, indicating a high severity level.
How can I fix CVE-2019-2284?
To fix CVE-2019-2284, it is recommended to apply the necessary patches and updates provided by Qualcomm or the respective device manufacturers.
Where can I find more information about CVE-2019-2284?
More information about CVE-2019-2284 can be found in the Code Aurora security bulletin for August 2019.