PT-2019-11878 · Qualcomm · Snapdragon Mobile+7

Published

2019-12-12

·

Updated

2019-12-12

·

CVE-2019-10485

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Snapdragon Auto versions APQ8009 through SDM850 Snapdragon Compute versions APQ8009 through SDM850 Snapdragon Consumer IOT versions APQ8009 through SDM850 Snapdragon Industrial IOT versions APQ8009 through SDM850 Snapdragon IoT versions APQ8009 through SDM850 Snapdragon Mobile versions APQ8009 through SDM850 Snapdragon Voice & Music versions APQ8009 through SDM850 Snapdragon Wearables versions APQ8009 through SDM850
Description An infinite loop while decoding compressed data can lead to an overrun condition.
Recommendations For Snapdragon Auto versions APQ8009 through SDM850, update to a version that includes the fix for this issue. For Snapdragon Compute versions APQ8009 through SDM850, update to a version that includes the fix for this issue. For Snapdragon Consumer IOT versions APQ8009 through SDM850, update to a version that includes the fix for this issue. For Snapdragon Industrial IOT versions APQ8009 through SDM850, update to a version that includes the fix for this issue. For Snapdragon IoT versions APQ8009 through SDM850, update to a version that includes the fix for this issue. For Snapdragon Mobile versions APQ8009 through SDM850, update to a version that includes the fix for this issue. For Snapdragon Voice & Music versions APQ8009 through SDM850, update to a version that includes the fix for this issue. For Snapdragon Wearables versions APQ8009 through SDM850, update to a version that includes the fix for this issue.

Fix

Infinite Loop

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-10485

Affected Products

Snapdragon Auto
Snapdragon Compute
Snapdragon Consumer Iot
Snapdragon Industrial Iot
Snapdragon Iot
Snapdragon Mobile
Snapdragon Voice & Music
Snapdragon Wearables