TROYANOSYVIRUS
Volver a CVEs

CVE-2019-2285

CRITICAL
9.8

Descripcion

Out of bound write issue is observed while giving information about properties that have been set so far for playing video in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8909W, MSM8996AU, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, Snapdragon_High_Med_2016, SXR1130

Detalles CVE

Puntuacion CVSS v3.19.8
SeveridadCRITICAL
Vector CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vector de ataqueNETWORK
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado11/6/2019
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0

Productos afectados

qualcomm:msm8909wqualcomm:msm8909w_firmwarequalcomm:msm8996auqualcomm:msm8996au_firmwarequalcomm:qcs605qualcomm:qcs605_firmwarequalcomm:qualcomm_215qualcomm:qualcomm_215_firmwarequalcomm:sd_205qualcomm:sd_205_firmwarequalcomm:sd_210qualcomm:sd_210_firmwarequalcomm:sd_212qualcomm:sd_212_firmwarequalcomm:sd_425qualcomm:sd_425_firmwarequalcomm:sd_427qualcomm:sd_427_firmwarequalcomm:sd_429qualcomm:sd_429_firmwarequalcomm:sd_430qualcomm:sd_430_firmwarequalcomm:sd_435qualcomm:sd_435_firmwarequalcomm:sd_439qualcomm:sd_439_firmwarequalcomm:sd_450qualcomm:sd_450_firmwarequalcomm:sd_625qualcomm:sd_625_firmwarequalcomm:sd_632qualcomm:sd_632_firmwarequalcomm:sd_636qualcomm:sd_636_firmwarequalcomm:sd_665qualcomm:sd_665_firmwarequalcomm:sd_670qualcomm:sd_670_firmwarequalcomm:sd_675qualcomm:sd_675_firmwarequalcomm:sd_710qualcomm:sd_710_firmwarequalcomm:sd_712qualcomm:sd_712_firmwarequalcomm:sd_730qualcomm:sd_730_firmwarequalcomm:sd_820qualcomm:sd_820_firmwarequalcomm:sd_820aqualcomm:sd_820a_firmwarequalcomm:sd_835qualcomm:sd_835_firmwarequalcomm:sd_845qualcomm:sd_845_firmwarequalcomm:sd_850qualcomm:sd_850_firmwarequalcomm:sd_855qualcomm:sd_855_firmwarequalcomm:sd_8cxqualcomm:sd_8cx_firmwarequalcomm:sda660qualcomm:sda660_firmwarequalcomm:sdm439qualcomm:sdm439_firmwarequalcomm:sdm630qualcomm:sdm630_firmwarequalcomm:sdm660qualcomm:sdm660_firmwarequalcomm:snapdragon_high_med_2016qualcomm:snapdragon_high_med_2016_firmwarequalcomm:sxr1130qualcomm:sxr1130_firmware

Debilidades (CWE)

CWE-787

Referencias

https://source.android.com/security/bulletin/(product-security@qualcomm.com)
https://source.android.com/security/bulletin/(af854a3a-2127-422b-91ae-364da2661108)

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.