CVE-2019-2318: Medium severity android vulnerability
Non Secure Kernel can cause Trustzone to do an arbitrary memory read which will result into DOS in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8017, APQ8053, APQ8096, APQ8096AU, IPQ8074, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, QCA8081, QM215, SDM429, SDM439, SDM450, SDM632, SnapdragonHighMed2016
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2019-2318.
What is the severity of CVE-2019-2318?
The severity of CVE-2019-2318 is high with a CVSS score of 5.5.
Which products are affected by CVE-2019-2318?
CVE-2019-2318 affects Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in various Qualcomm processors.
How can CVE-2019-2318 result in a denial-of-service (DoS) attack?
CVE-2019-2318 can result in a DoS attack by causing Trustzone to perform an arbitrary memory read.
Where can I find more information about CVE-2019-2318?
You can find more information about CVE-2019-2318 in the October 2019 bulletin by Qualcomm and the Android security bulletin of October 2019.