CVE-2019-2297: Buffer Overflow
Buffer overflow can occur while processing non-standard NAN message from user space. in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, IPQ4019, IPQ8064, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCN7605, QCS405, QCS605, SDA660, SDA845, SDM636, SDM660, SDM845, SDX20, SDX24, SM8150
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2019-2297?
CVE-2019-2297 is a vulnerability that can lead to a buffer overflow while processing non-standard NAN message from user space.
What software is affected by CVE-2019-2297?
CVE-2019-2297 affects various Qualcomm products including Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in AP.
How severe is CVE-2019-2297?
CVE-2019-2297 has a severity score of 7.8, which is considered high.
How can I fix CVE-2019-2297?
To fix CVE-2019-2297, it is recommended to apply the patches provided by Qualcomm. Please refer to the official Qualcomm website for more information.
Where can I find more information about CVE-2019-2297?
You can find more information about CVE-2019-2297 on the official Qualcomm website in their October 2019 bulletin.