2019 CVE Vulnerabilities

17,621 CVEs published in 2019.

CVE IDSeverityCVSSDescription
CVE-2019-2324CRITICAL9.8When ADSP is compromised, the audio port index that`s returned from ADSP might be out of the valid range and leads to ou...
CVE-2019-2323CRITICAL9.8Lack of check to ensure crypto engine data passed by user is initialized can result in bus error in Snapdragon Auto, Sna...
CVE-2019-2302CRITICAL9.8While processing vendor command which contains corrupted channel count, an integer overflow occurs and finally will lead...
CVE-2019-2285CRITICAL9.8Out of bound write issue is observed while giving information about properties that have been set so far for playing vid...
CVE-2019-2283CRITICAL9.8Improper validation of read and write index of tx and rx fifo`s before calculating pointer can lead to out-of-bound acce...
CVE-2019-2275MEDIUM5.5While deserializing any key blob during key operations, buffer overflow could occur exposing partial key information if ...
CVE-2019-2258CRITICAL9.8Improper validation of array index causes OOB write and then leads to memory corruption in MMCP in Snapdragon Auto, Snap...
CVE-2019-2249CRITICAL9.8Kernel can do a memory read from arbitrary address passed by user during execution of a syscall in Snapdragon Auto, Snap...
CVE-2019-2246HIGH7.8Thread start can cause invalid memory writes to arbitrary memory location since the argument is passed by user to kernel...
CVE-2019-10565CRITICAL9.8Double free issue can happen when sensor power settings is freed by some thread while another thread try to access. in S...
CVE-2019-10542CRITICAL9.8Buffer over-read may occur when downloading a corrupted firmware file that has chunk length in header which doesn`t matc...
CVE-2019-10541CRITICAL9.8Dereference on uninitialized buffer can happen when parsing FLV clip with corrupted codec specific data in Snapdragon Au...
CVE-2019-10534CRITICAL9.8Null-pointer dereference can occur while accessing the super index entry when it is not been allocated in Snapdragon Aut...
CVE-2019-10533CRITICAL9.8Out of bound access due to improper validation of array index cause the index table entry to get corrupt in Snapdragon A...
CVE-2019-10531CRITICAL9.8Incorrect reading of system image resulting in buffer overflow when size of system image is increased in Snapdragon Auto...
CVE-2019-10529HIGH8.1Possible use after free issue due to race condition while attempting to mark the entry pages as dirty using function set...
CVE-2019-10528CRITICAL9.8Use after free issue in kernel while accessing freed mdlog session info and its attributes after closing the session in ...
CVE-2019-10524HIGH7.8Lack of check for a negative value returned for get_clk is wrongly interpreted as valid pointer and lead to use after fr...
CVE-2019-10522CRITICAL9.8While playing the clip which is nonstandard buffer overflow can occur while parsing in Snapdragon Auto, Snapdragon Compu...
CVE-2019-10515MEDIUM5.5DCI client which might be preemptively freed up might be accessed for transferring packets leading to kernel error in Sn...
CVE-2019-10512HIGH7.8Payload size is not checked before using it as array index in audio in Snapdragon Auto, Snapdragon Compute, Snapdragon C...
CVE-2019-10505CRITICAL9.8Out of bound access while processing a non-standard IE measurement request with length crossing past the size of frame i...
CVE-2019-10504MEDIUM6.5Firmware not able to send EXT scan response to host within 1 sec due to resource consumption issue in Snapdragon Auto, S...
CVE-2019-10502HIGH7.8Possible stack overflow when an index equal to io buffer size is accessed in camera module in Snapdragon Compute, Snapdr...
CVE-2019-10496HIGH7.8Lack of checking a variable received from driver and populating in Firmware data structure leads to buffer overflow in S...

Check if your code is affected by 2019 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now