Qualcomm Components CVE-2019-2278 Local Authentication Bypass Vulnerability
BID:109378
Info
Qualcomm Components CVE-2019-2278 Local Authentication Bypass Vulnerability
| Bugtraq ID: | 109378 |
| Class: | Design Error |
| CVE: |
CVE-2019-2278 |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 01 2019 12:00AM |
| Updated: | Jul 01 2019 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Google Pixel XL 0 Google Pixel C 0 Google Pixel 0 Google Nexus Player 0 Google Nexus 9 Google Nexus 6P Google Nexus 6 Google Nexus 5X Google Android 0 |
| Not Vulnerable: | |
Discussion
Qualcomm Components CVE-2019-2278 Local Authentication Bypass Vulnerability
Qualcomm Components are prone to local authentication-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
This issue is being tracked by Android Bug ID A-130567114.
Qualcomm Components are prone to local authentication-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and perform unauthorized actions; this may aid in launching further attacks.
This issue is being tracked by Android Bug ID A-130567114.
Exploit / POC
Qualcomm Components CVE-2019-2278 Local Authentication Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Qualcomm Components CVE-2019-2278 Local Authentication Bypass Vulnerability
References:
References:
- platform: msm_shared: Move VB code similar to tip (Code Aurora)
- Android Security Bulletin�??July 2019 (Google)
- July 2019 Code Aurora Security Bulletin (Code Aurora)