2019 CVE Vulnerabilities
17,623 CVEs published in 2019.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-2301 | — | — | 0.2% | Jul 25, 2019 | Possibility of out-of-bound read if id received from SPI is not in range of FIFO in Snapdragon Auto, Snapdragon Compute,... |
| CVE-2019-2299 | — | — | 0.2% | Jul 25, 2019 | An out-of-bound write can be triggered by a specially-crafted command supplied by a userspace application. in Snapdragon... |
| CVE-2019-2298 | — | — | 0.2% | Jul 25, 2019 | Protection is missing while accessing md sessions info via macro which can lead to use-after-free in Snapdragon Auto, Sn... |
| CVE-2019-2293 | — | — | 0.2% | Jul 25, 2019 | Pointer dereference while freeing IFE resources due to lack of length check of in port resource. in Snapdragon Consumer ... |
| CVE-2019-2290 | — | — | 0.2% | Jul 25, 2019 | Multiple open and close from multiple threads will lead camera driver to access destroyed session data pointer in Snapdr... |
| CVE-2019-2281 | — | — | 0.2% | Jul 25, 2019 | An unauthenticated bitmap image can be loaded in to memory and subsequently cause execution of unverified code. in Snapd... |
| CVE-2019-2278 | — | — | 0.2% | Jul 25, 2019 | User keystore signature is ignored in boot and can lead to bypass boot image signature verification in Snapdragon Auto, ... |
| CVE-2019-2276 | — | — | 0.9% | Jul 25, 2019 | Possible out of bound read occurs while processing beaconing request due to lack of check on action frames received from... |
| CVE-2019-2273 | — | — | 0.7% | Jul 25, 2019 | IOMMU page fault while playing h265 video file leads to denial of service issue in Snapdragon Auto, Snapdragon Compute, ... |
| CVE-2019-2272 | — | — | 0.2% | Jul 25, 2019 | Buffer overflow can occur in display function due to lack of validation of header block size set by user. in Snapdragon ... |
| CVE-2019-2263 | — | — | 0.2% | Jul 25, 2019 | Access to freed memory can happen while reading from diag driver due to use after free issue in Snapdragon Auto, Snapdra... |
| CVE-2019-2254 | — | — | 0.7% | Jul 25, 2019 | Position determination accuracy may be degraded due to wrongly decoded information in Snapdragon Auto, Snapdragon Comput... |
| CVE-2019-2253 | — | — | 0.7% | Jul 25, 2019 | Buffer over-read can occur while parsing an ogg file with a corrupted comment block. in Snapdragon Auto, Snapdragon Conn... |
| CVE-2019-2241 | — | — | 0.2% | Jul 25, 2019 | While rendering the layout background, Error status check is not caught properly and also incorrect status handling is b... |
| CVE-2019-2240 | — | — | 0.2% | Jul 25, 2019 | While sending the rendered surface content to the screen, Error handling is not properly checked results in an unpredict... |
| CVE-2019-2239 | — | — | 0.2% | Jul 25, 2019 | Sanity checks are missing in layout which can lead to SUI Corruption or can lead to Denial of Service in Snapdragon Auto... |
| CVE-2019-2238 | — | — | 0.2% | Jul 25, 2019 | Lack of check of data type can lead to subsequent loop-expression potentially go negative and the condition will still e... |
| CVE-2019-2237 | — | — | 0.2% | Jul 25, 2019 | Failure in taking appropriate action to handle the error case If keypad gpio deactivation fails leads to silent failure ... |
| CVE-2019-2236 | — | — | 0.2% | Jul 25, 2019 | Null pointer dereference during secure application termination using specific application ids. in Snapdragon Auto, Snapd... |
| CVE-2019-2235 | — | — | 0.2% | Jul 25, 2019 | Buffer overflow occurs when emulated RPMB is used due to sector size assumptions in the TA rollback protection logic. in... |
| CVE-2019-14270 | — | — | 0.5% | Jul 25, 2019 | Comodo Antivirus through 12.0.0.6870, Comodo Firewall through 12.0.0.6870, and Comodo Internet Security Premium through ... |
| CVE-2019-14268 | — | — | 1.1% | Jul 25, 2019 | In Octopus Deploy versions 3.0.19 to 2019.7.2, when a web request proxy is configured, an authenticated user (in certain... |
| CVE-2019-14266 | — | — | 1.3% | Jul 25, 2019 | OpenSNS v6.1.0 allows SQL Injection via the index.php?s=/ucenter/Config/ uid parameter because of the getNeedQueryData f... |
| CVE-2019-4439 | MEDIUM | 5.3 | 0.3% | Jul 25, 2019 | IBM Cloud Private 3.1.0, 3.1.1, and 3.1.2 does not invalidate session after logout which could allow a local user to imp... |
| CVE-2019-4415 | HIGH | 7.8 | 0.3% | Jul 25, 2019 | IBM Cloud Private 3.1.1 and 3.1.2 could allow a local user to obtain elevated privileges due to improper security contex... |
Check if your code is affected by 2019 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now