PT-2019-4646 · Qualcomm · Qualcomm Ipc

Xiaoyuhe

·

Publicado

2019-09-27

·

Atualizado

2022-04-12

·

CVE-2019-10627

CVSS v2.0

10

Crítica

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm IPS versions prior to 2019.2
Description The issue is caused by an integer overflow in PostScript- and PDF-compatible interpreters, which can lead to a buffer overflow. This is due to incorrect buffer size calculation in the PostScript image handling code. The exploitation of this issue may allow a remote attacker to impact the confidentiality, integrity, and availability of protected information.
Recommendations For versions prior to 2019.2, update to version 2019.2 or later to resolve the issue. As a temporary workaround, consider restricting the use of PostScript and PDF printing functions until a patch is available. Avoid using the vulnerable PostScript image handling code in the affected interpreters until the issue is resolved.

Correção

Buffer Overflow

Integer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2020-00812
CVE-2019-10627

Produtos afetados

Qualcomm Ipc