PT-2019-16386 · Qualcomm · Snapdragon Iot+8

Published

2019-07-25

·

Updated

2019-08-05

·

CVE-2019-2322

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon Auto versions MDM9150 through SD 855 Qualcomm Snapdragon Compute versions MDM9150 through SD 855 Qualcomm Snapdragon Connectivity versions MDM9150 through SD 855 Qualcomm Snapdragon Consumer IOT versions MDM9150 through SD 855 Qualcomm Snapdragon Industrial IOT versions MDM9150 through SD 855 Qualcomm Snapdragon IoT versions MDM9150 through SD 855 Qualcomm Snapdragon Mobile versions MDM9150 through SD 855 Qualcomm Snapdragon Voice & Music versions MDM9150 through SD 855 Qualcomm Snapdragon Wearables versions MDM9150 through SD 855
Description A buffer overflow issue can occur when playing specific non-standard clips, potentially affecting various Qualcomm Snapdragon products, including Auto, Compute, Connectivity, Consumer IOT, Industrial IOT, IoT, Mobile, Voice & Music, and Wearables. The issue is related to the handling of certain clip formats.
Recommendations For Qualcomm Snapdragon Auto, update to a version that includes the fix for this issue. For Qualcomm Snapdragon Compute, update to a version that includes the fix for this issue. For Qualcomm Snapdragon Connectivity, update to a version that includes the fix for this issue. For Qualcomm Snapdragon Consumer IOT, update to a version that includes the fix for this issue. For Qualcomm Snapdragon Industrial IOT, update to a version that includes the fix for this issue. For Qualcomm Snapdragon IoT, update to a version that includes the fix for this issue. For Qualcomm Snapdragon Mobile, update to a version that includes the fix for this issue. For Qualcomm Snapdragon Voice & Music, update to a version that includes the fix for this issue. For Qualcomm Snapdragon Wearables, update to a version that includes the fix for this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-2322

Affected Products

Snapdragon Auto
Snapdragon Compute
Snapdragon Connectivity
Snapdragon Consumer Iot
Snapdragon Industrial Iot
Snapdragon Iot
Snapdragon Mobile
Snapdragon Voice & Music
Snapdragon Wearables