Potential double free scenario if driver receives another DIAG_EVENT_LOG_SUPPORTED event from firmware as the pointer is not set to NULL on first call in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, IPQ4019, IPQ8064, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCA6174A, QCA6574AU, QCA8081, QCA9377, QCA9379, QCN7605, QCS405, QCS605, SDA660, SDA845, SDM450, SDM630, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
View Full Alert
Related Posts
CVE-2018-11980 (apq8009_firmware, apq8017_firmware, apq8053_firmware, apq8064_firmware, apq8096au_firmware, mdm9206_firmware, mdm9207c_firmware, mdm9607_firmware, mdm9640_firmware, mdm9650_firmware, msm8937_firmware, msm8996au_firmware, msm8998_firmware, qca6174a_firmware, qca6574au_firmware, qca9377_firmware, qca9379_firmware, qcn7605_firmware, qcs605_firmware, sdm630_firmware, sdm636_firmware, sdm660_firmware, sdx20_firmware, sdx24_firmware, sdx55_firmware, sm6150_firmware, sm7150_firmware, sm8150_firmware, sxr1130_firmware)When a fake broadcast/multicast 11w rmf without mmie received, since no proper length check in wma_process_bip, buffer overflow will happen in both cds_is_mmie_valid and qdf_nbuf_trim_tail in Snapdragon Auto, Snapdragon Consumer…
CVE-2019-10480 (apq8009_firmware, apq8017_firmware, apq8053_firmware, apq8096au_firmware, apq8098_firmware, ipq4019_firmware, ipq8064_firmware, ipq8074_firmware, mdm9206_firmware, mdm9207c_firmware, mdm9607_firmware, mdm9615_firmware, mdm9640_firmware, mdm9650_firmware, msm8909_firmware, msm8909w_firmware, msm8917_firmware, msm8920_firmware, msm8937_firmware, msm8939_firmware, msm8940_firmware, msm8996au_firmware, qca6174a_firmware, qca6574au_firmware, qca9377_firmware, qca9379_firmware, qca9980_firmware, qcn7605_firmware, qcs605_firmware, sda660_firmware, sda845_firmware, sdm630_firmware, sdm636_firmware, sdm660_firmware, sdm670_firmware, sdm710_firmware, sdm845_firmware, sdx20_firmware, sdx24_firmware, sm6150_firmware, sm7150_firmware, sm8150_firmware, sxr1130_firmware)Out of bound write can happen in WMI firmware event handler due to lack of validation of data received from WLAN firmware in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon…
CVE-2019-10487 (apq8009_firmware, apq8017_firmware, apq8053_firmware, apq8096_firmware, apq8096au_firmware, apq8098_firmware, mdm9150_firmware, mdm9205_firmware, mdm9206_firmware, mdm9607_firmware, mdm9615_firmware, mdm9625_firmware, mdm9635m_firmware, mdm9640_firmware, mdm9645_firmware, mdm9650_firmware, mdm9655_firmware, msm8905_firmware, msm8909_firmware, msm8909w_firmware, msm8917_firmware, msm8920_firmware, msm8937_firmware, msm8939_firmware, msm8940_firmware, msm8953_firmware, msm8996au_firmware, msm8998_firmware, nicobar_firmware, qcm2150_firmware, qcs605_firmware, qm215_firmware, sc8180x_firmware, sda660_firmware, sda845_firmware, sdm429_firmware, sdm439_firmware, sdm450_firmware, sdm630_firmware, sdm632_firmware, sdm636_firmware, sdm660_firmware, sdm670_firmware, sdm710_firmware, sdm845_firmware, sdm850_firmware, sdx20_firmware, sdx24_firmware, sdx55_firmware, sm6150_firmware, sm7150_firmware, sm8150_firmware, sxr1130_firmware)Buffer over read can happen while parsing SMS OTA messages at transport layer if network sends un-intended values in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…