CVE-2019-10607 - Qualcomm Qca9980 Firmware, Qualcomm Msm8917 Firmware and Qualcomm Qcn7605 Firmware

Critical 7.8

Out of bounds memcpy can occur by providing the embedded NULL character string and length greater than the actual string length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, APQ8098, IPQ4019, IPQ8064, IPQ8074, MDM9206, MDM9207C, MDM9607, MDM9615, MDM9640, MDM9650, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8996, MSM8996AU, QCA4531, QCA8081, QCA9531, QCA9558, QCA9886, QCA9980, QCN7605, QCS605, SDA660, SDX20, SDX24, SDX55, SM8150, SXR1130

Affected software

Qualcomm Qca9980 Firmware

Qualcomm Msm8917 Firmware

Qualcomm Qcn7605 Firmware

Qualcomm Msm8920 Firmware

Qualcomm Qca9886 Firmware

Qualcomm Sdx24 Firmware

Qualcomm Msm8909w Firmware

Qualcomm Sda660 Firmware

Qualcomm Ipq8064 Firmware

Qualcomm Apq8017 Firmware

Qualcomm Qcs605 Firmware

Qualcomm Qca4531 Firmware

Qualcomm Msm8937 Firmware

Qualcomm Qca8081 Firmware

Qualcomm Msm8905 Firmware

Qualcomm Sdx55 Firmware

Qualcomm Mdm9640 Firmware

Qualcomm Qca9558 Firmware

Qualcomm Qca9531 Firmware

Qualcomm Apq8064 Firmware

Qualcomm Mdm9206 Firmware

Qualcomm Msm8996 Firmware

Qualcomm Mdm9615 Firmware

Qualcomm Sm8150 Firmware

Qualcomm Apq8096au Firmware

Qualcomm Msm8909 Firmware

Qualcomm Ipq8074 Firmware

Qualcomm Mdm9650 Firmware

Qualcomm Msm8939 Firmware

Qualcomm Sxr1130 Firmware

Qualcomm Apq8098 Firmware

Qualcomm Msm8996au Firmware

Qualcomm Ipq4019 Firmware

Qualcomm Sdx20 Firmware

Qualcomm Msm8940 Firmware

Qualcomm Apq8009 Firmware

Qualcomm Mdm9207c Firmware

Qualcomm Apq8053 Firmware

Qualcomm Mdm9607 Firmware

Reference links

Get alerted to vulnerabilities in your software

CVE alerts, vulnerability alerts, latest versions and news matched to your software stack.