ZeroHour

CVE-2019-2246

CVSS 3.1
7.8 high
EPSS
<1%p10
Published
()
Modified
Description

Thread start can cause invalid memory writes to arbitrary memory location since the argument is passed by user to kernel in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9205, MDM9640, MSM8996AU, QCA6574, QCS605, Qualcomm 215, SD 425, SD 427, SD 435, SD 439 / SD 429, SD 450, SD 625, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 835, SD 845 / SD 850, SD 855, SD 8CX, SDA660, SDM439, SDM630, SDM660, SDX24, Snapdragon_High_Med_2016, SXR1130

Vendors
qualcomm
Products
mdm9205 firmware, mdm9640 firmware, msm8996au firmware, qca6574 firmware, qcs605 firmware, qualcomm 215 firmware, sd 425 firmware, sd 427 firmware, sd 435 firmware, sd 439 firmware, sd 429 firmware, sd 450 firmware
Weakness
CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.