2019 CVE Vulnerabilities
17,619 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-14122 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Memory failure in SKB if it fails to to add the requested padding to the skb in low memory targets or targets with major... |
| CVE-2019-14116 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Privilege escalation by using an altered debug policy image can occur as the XPU protecting the debug policy regions are... |
| CVE-2019-14105 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Kernel was reading the CSL defined reserved field as uint16 instead of uint32 which could lead to memory overflow in Sna... |
| CVE-2019-14104 | HIGH | 7.1 | 0.2% | Apr 16, 2020 | Slab-out-of-bounds access can occur if the context pointer is invalid due to lack of null check on pointer before access... |
| CVE-2019-14070 | HIGH | 7 | 0.1% | Apr 16, 2020 | Possible use after free issue in pcm volume controls due to race condition exist in private data used in mixer controls ... |
| CVE-2019-14022 | HIGH | 7.5 | 0.8% | Apr 16, 2020 | Error occurs While extracting the ipv6_header having an invalid length due to lack of length check in Snapdragon Auto, S... |
| CVE-2019-14021 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Possible buffer overrun when processing EFS filename and payload sent over diag interface due to lack of check for filen... |
| CVE-2019-14018 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Possible out of bound array access as there is no check on carrier index passed in Snapdragon Auto, Snapdragon Compute, ... |
| CVE-2019-14012 | HIGH | 7.5 | 0.8% | Apr 16, 2020 | Possibility of null pointer deference as the array of video codecs from media info is referenced without null checking w... |
| CVE-2019-14009 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Out of bound memory access while processing TZ command handler due to improper input validation on response length recei... |
| CVE-2019-14001 | HIGH | 7.8 | 0.1% | Apr 16, 2020 | Wrong public key usage from existing oem_keystore for hash generation in Snapdragon Auto, Snapdragon Consumer IOT, Snapd... |
| CVE-2019-10625 | HIGH | 7.1 | 0.2% | Apr 16, 2020 | Out of bound access in diag services when DCI command buffer reallocation is not done properly with required capacity in... |
| CVE-2019-10624 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | While handling the vendor command there is an integer truncation issue that could yield a buffer overflow due to int dat... |
| CVE-2019-10623 | HIGH | 7.1 | 0.2% | Apr 16, 2020 | Possible integer overflow can happen in host driver while processing user controlled string due to improper validation o... |
| CVE-2019-10621 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Use after free issue when MAP and UNMAP calls at same time as data structure used my MAP may be freed by UNMAP function ... |
| CVE-2019-10620 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Kernel memory error in debug module due to improper check of user data length before copying into memory in Snapdragon A... |
| CVE-2019-10575 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Wlan binary which is not signed with OEMs RoT is working on secure device without authentication failure in Snapdragon C... |
| CVE-2019-10574 | HIGH | 7.1 | 1.6% | Apr 16, 2020 | Lack of boundary checks for data offsets received from HLOS can lead to out-of-bound read in Snapdragon Auto, Snapdragon... |
| CVE-2019-10556 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | Missing length check before copying the data from kernel space to userspace through the copy function can lead to buffer... |
| CVE-2019-10547 | HIGH | 7.8 | 0.2% | Apr 16, 2020 | When issuing IOCTL calls to ION, Memory leak can occur due to failure in unassign pages under certain conditions in Snap... |
| CVE-2019-20681 | HIGH | 8.8 | 1.1% | Apr 15, 2020 | Certain NETGEAR devices are affected by authentication bypass. This affects D6200 before 1.1.00.34, D7000 before 1.0.1.6... |
| CVE-2019-20680 | HIGH | 8 | 0.8% | Apr 15, 2020 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D7000v2 before 1.0.0.53... |
| CVE-2019-12520 | HIGH | 7.5 | 3.9% | Apr 15, 2020 | An issue was discovered in Squid through 4.7 and 5. When receiving a request, Squid checks its cache to see if it can se... |
| CVE-2019-20659 | HIGH | 7.2 | 1.9% | Apr 15, 2020 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6400v2 before 1.0.4.84... |
| CVE-2019-20657 | HIGH | 8 | 1.0% | Apr 15, 2020 | Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6200 before 1.1.00.36,... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now