{"id":36876,"date":"2019-10-31T22:14:26","date_gmt":"2019-10-31T19:14:26","guid":{"rendered":"https:\/\/prohoster.info\/blog\/uyazvimost-v-chipah-qualcomm-pozvolyayushhaya-atakovat-android-ustrojstvo-cherez-wi-fi\/"},"modified":"2019-10-31T22:14:26","modified_gmt":"2019-10-31T19:14:26","slug":"uyazvimost-v-chipah-qualcomm-pozvolyayushhaya-atakovat-android-ustrojstvo-cherez-wi-fi","status":"publish","type":"post","link":"https:\/\/prohoster.info\/sq\/blog\/news\/uyazvimost-v-chipah-qualcomm-pozvolyayushhaya-atakovat-android-ustrojstvo-cherez-wi-fi","title":{"rendered":"Vulnerabilitet n\u00eb \u00e7ipat Qualcomm q\u00eb lejon sulmimin e nj\u00eb pajisjeje Android p\u00ebrmes Wi-Fi","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>N\u00eb paket\u00ebn e \u00e7ipave Qualcomm wireless <noindex><a rel=\"nofollow\" href=\"https:\/\/blade.tencent.com\/en\/advisories\/qualpwn\/\">jan\u00eb identifikuar<\/a><\/noindex> tre vulnerabilitete, t\u00eb cilat jan\u00eb paraqitur me emrin kodor \"QualPwn\". Problemi i par\u00eb (CVE-2019-10539) lejon sulme t\u00eb larg\u00ebta n\u00eb pajisjet mbi platform\u00ebn Android p\u00ebrmes Wi-Fi. Problemi i dyt\u00eb ndodhet n\u00eb firmware-n pronar me grumbullin wireless t\u00eb Qualcomm dhe lejon akses n\u00eb modem-in baseband (CVE-2019-10540). Problemi i tret\u00eb <noindex><a rel=\"nofollow\" href=\"https:\/\/source.codeaurora.org\/quic\/la\/kernel\/msm-4.9\/commit\/?id=e0d510ff0fcb0778571579635b53ddd7e4caeb24\">ese<\/a><\/noindex> \u00ebsht\u00eb n\u00eb drejtuesin icnss (CVE-2019-10538) dhe ofron mund\u00ebsin\u00eb p\u00ebr t\u00eb arritur ekzekutimin e kodit t\u00eb tij n\u00eb nivelin e b\u00ebrtham\u00ebs s\u00eb platform\u00ebs Android. N\u00ebse shfryt\u00ebzimi i suitalizimeve t\u00eb p\u00ebrmendura \u00ebsht\u00eb i suksessh\u00ebm, sulmuesi mund t\u00eb marr\u00eb kontroll t\u00eb larg\u00ebt mbi pajisjen e p\u00ebrdoruesit, p\u00ebr t\u00eb cil\u00ebn Wi-Fi \u00ebsht\u00eb aktiv (p\u00ebr sulmin k\u00ebrkohet q\u00eb viktima dhe sulmuesi t\u00eb jen\u00eb t\u00eb lidhur n\u00eb t\u00eb nj\u00ebjt\u00ebn rrjet wireless).<\/p>\n<p>Mund\u00ebsia e sulmit u demonstruar p\u00ebr smartphone-t Google Pixel2 dhe Pixel3. Sipas vler\u00ebsimeve t\u00eb hulumtuesve, problemi mund\u00ebsisht prek m\u00eb shum\u00eb se 835,000 pajisje mbi SoC Qualcomm Snapdragon 835 dhe \u00e7ipa m\u00eb t\u00eb rinj (q\u00eb nga Snapdragon 835, firmware WLAN u integrua me n\u00ebn-sistemin e modem-it dhe u ekzekutua si nj\u00eb aplikacion i izoluar n\u00eb hap\u00ebsir\u00ebn e p\u00ebrdoruesit). Sipas <noindex><a rel=\"nofollow\" href=\"https:\/\/www.qualcomm.com\/company\/product-security\/bulletins\">t\u00eb dh\u00ebnave<\/a><\/noindex> Qualcomm, problemi prek disa dhjet\u00ebra \u00e7ipa t\u00eb ndrysh\u00ebm. <\/p>\n<p>Aktualisht, informacionet mbi vulnerabilitetet jan\u00eb t\u00eb p\u00ebrgjithshme dhe detajet <noindex><a rel=\"nofollow\" href=\"https:\/\/www.blackhat.com\/us-19\/briefings\/schedule\/index.html#exploiting-qualcomm-wlan-and-modem-over-the-air-15481\">parashihet<\/a><\/noindex> do t\u00eb zbulohen m\u00eb 8 gusht n\u00eb konferenc\u00ebn Black Hat. Kompanit\u00eb Qualcomm dhe Google u njoftuan p\u00ebr problemet n\u00eb mars dhe tashm\u00eb kan\u00eb publikuar rregullime (Qualcomm informoi p\u00ebr problemet n\u00eb <noindex><a rel=\"nofollow\" href=\"https:\/\/www.qualcomm.com\/company\/product-security\/bulletins\">raportin e qershorit<\/a><\/noindex>, dhe Google rregulloi vulnerabilitetet n\u00eb <noindex><a rel=\"nofollow\" href=\"https:\/\/source.android.com\/security\/bulletin\/2019-08-01.html\">p\u00ebrdit\u00ebsimin e gushtit<\/a><\/noindex> t\u00eb platform\u00ebs Android). T\u00eb gjith\u00eb p\u00ebrdoruesve t\u00eb pajisjeve mbi \u00e7ipat Qualcomm u rekomandohet t\u00eb instalojn\u00eb p\u00ebrdit\u00ebsimet e disponueshme.<\/p>\n<p>P\u00ebrve\u00e7 problemeve t\u00eb lidhura me \u00e7ipat Qualcomm, p\u00ebrdit\u00ebsimi i gushtit t\u00eb platform\u00ebs Android gjithashtu eliminoi nj\u00eb vulnerabilitet kritik (CVE-2019-11516) n\u00eb paket\u00ebn Bluetooth Broadcom, q\u00eb lejon sulmuesit t\u00eb ekzekutojn\u00eb kodin e tyre n\u00eb kontekstin e nj\u00eb procesi me privilegje p\u00ebrmes d\u00ebrgimit t\u00eb nj\u00eb k\u00ebrkese t\u00eb ve\u00e7ant\u00eb p\u00ebr transferim t\u00eb t\u00eb dh\u00ebnave. N\u00eb komponent\u00ebt sistemik t\u00eb Android \u00ebsht\u00eb eliminuar nj\u00eb vulnerabilitet (CVE-2019-2130), q\u00eb lejon arritjen e ekzekutimit t\u00eb kodit me privilegje t\u00eb rritura gjat\u00eb trajtimit t\u00eb skeda PAC t\u00eb hartuar n\u00eb m\u00ebnyr\u00eb specifike.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Burimi: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=51228\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0412 \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u043e\u043c \u0441\u0442\u0435\u043a\u0435 \u0447\u0438\u043f\u043e\u0432 Qualcomm \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u044b \u0442\u0440\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438, \u043a\u043e\u0442\u043e\u0440\u044b\u0435 \u043f\u0440\u0435\u043f\u043e\u0434\u043d\u0435\u0441\u0435\u043d\u044b \u043f\u043e\u0434 \u043a\u043e\u0434\u043e\u0432\u044b\u043c \u0438\u043c\u0435\u043d\u0435\u043c &#171;QualPwn&#187;. \u041f\u0435\u0440\u0432\u0430\u044f \u043f\u0440\u043e\u0431\u043b\u0435\u043c\u0430 (CVE-2019-10539) \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u0435\u0442 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e \u0430\u0442\u0430\u043a\u043e\u0432\u0430\u0442\u044c \u0443\u0441\u0442\u0440\u043e\u0439\u0441\u0442\u0432\u0430 \u043d\u0430 \u0431\u0430\u0437\u0435 \u043f\u043b\u0430\u0442\u0444\u043e\u0440\u043c\u044b Android \u0447\u0435\u0440\u0435\u0437 Wi-Fi. \u0412\u0442\u043e\u0440\u0430\u044f \u043f\u0440\u043e\u0431\u043b\u0435\u043c\u0430 \u043f\u0440\u0438\u0441\u0443\u0442\u0441\u0442\u0432\u0443\u0435\u0442 \u0432 \u043f\u0440\u043e\u043f\u0440\u0438\u0435\u0442\u0430\u0440\u043d\u043e\u0439 \u043f\u0440\u043e\u0448\u0438\u0432\u043a\u0435 \u0441 \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u044b\u043c \u0441\u0442\u0435\u043a\u043e\u043c Qualcomm \u0438 \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u0435\u0442 \u043f\u043e\u043b\u0443\u0447\u0438\u0442\u044c \u0434\u043e\u0441\u0442\u0443\u043f \u043a baseband-\u043c\u043e\u0434\u0435\u043c\u0443 (CVE-2019-10540). \u0422\u0440\u0435\u0442\u044c\u044f \u043f\u0440\u043e\u0431\u043b\u0435\u043c\u0430 \u043f\u0440\u0438\u0441\u0443\u0442\u0441\u0442\u0432\u0443\u0435\u0442 \u0432 \u0434\u0440\u0430\u0439\u0432\u0435\u0440\u0435 icnss (CVE-2019-10538) \u0438 \u0434\u0430\u0451\u0442 \u0432\u043e\u0437\u043c\u043e\u0436\u043d\u043e\u0441\u0442\u044c \u0434\u043e\u0431\u0438\u0442\u044c\u0441\u044f [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-36876","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0412 \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u043e\u043c \u0441\u0442\u0435\u043a\u0435 \u0447\u0438\u043f\u043e\u0432 Qualcomm \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u044b \u0442\u0440\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438, \u043a\u043e\u0442\u043e\u0440\u044b\u0435 \u043f\u0440\u0435\u043f\u043e\u0434\u043d\u0435\u0441\u0435\u043d\u044b \u043f\u043e\u0434 \u043a\u043e\u0434\u043e\u0432\u044b\u043c \u0438\u043c\u0435\u043d\u0435\u043c &quot;QualPwn&quot;.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/sq\/blog\/news\/uyazvimost-v-chipah-qualcomm-pozvolyayushhaya-atakovat-android-ustrojstvo-cherez-wi-fi\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"sq_AL\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u0447\u0438\u043f\u0430\u0445 Qualcomm, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u0430\u0442\u0430\u043a\u043e\u0432\u0430\u0442\u044c Android-\u0443\u0441\u0442\u0440\u043e\u0439\u0441\u0442\u0432\u043e \u0447\u0435\u0440\u0435\u0437 Wi-Fi | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0412 \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u043e\u043c \u0441\u0442\u0435\u043a\u0435 \u0447\u0438\u043f\u043e\u0432 Qualcomm \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u044b \u0442\u0440\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438, \u043a\u043e\u0442\u043e\u0440\u044b\u0435 \u043f\u0440\u0435\u043f\u043e\u0434\u043d\u0435\u0441\u0435\u043d\u044b \u043f\u043e\u0434 \u043a\u043e\u0434\u043e\u0432\u044b\u043c \u0438\u043c\u0435\u043d\u0435\u043c &quot;QualPwn&quot;.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/sq\/blog\/news\/uyazvimost-v-chipah-qualcomm-pozvolyayushhaya-atakovat-android-ustrojstvo-cherez-wi-fi\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-10-31T19:14:26+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2019-10-31T19:14:26+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Vulnerabiliteti n\u00eb \u00e7ipat Qualcomm, q\u00eb lejon sulmin e pajisjeve Android p\u00ebrmes Wi-Fi | ProHoster","description":"N\u00eb paket\u00ebn e \u00e7ipave Qualcomm wireless jan\u00eb identifikuar tre vulnerabilitete, t\u00eb cilat jan\u00eb paraqitur me emrin e kodit \"QualPwn\".","canonical_url":"https:\/\/prohoster.info\/sq\/blog\/news\/uyazvimost-v-chipah-qualcomm-pozvolyayushhaya-atakovat-android-ustrojstvo-cherez-wi-fi","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"sq_AL","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u0447\u0438\u043f\u0430\u0445 Qualcomm, \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0449\u0430\u044f \u0430\u0442\u0430\u043a\u043e\u0432\u0430\u0442\u044c Android-\u0443\u0441\u0442\u0440\u043e\u0439\u0441\u0442\u0432\u043e \u0447\u0435\u0440\u0435\u0437 Wi-Fi | ProHoster","og:description":"\u0412 \u0431\u0435\u0441\u043f\u0440\u043e\u0432\u043e\u0434\u043d\u043e\u043c \u0441\u0442\u0435\u043a\u0435 \u0447\u0438\u043f\u043e\u0432 Qualcomm \u0432\u044b\u044f\u0432\u043b\u0435\u043d\u044b \u0442\u0440\u0438 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438, \u043a\u043e\u0442\u043e\u0440\u044b\u0435 \u043f\u0440\u0435\u043f\u043e\u0434\u043d\u0435\u0441\u0435\u043d\u044b \u043f\u043e\u0434 \u043a\u043e\u0434\u043e\u0432\u044b\u043c \u0438\u043c\u0435\u043d\u0435\u043c &quot;QualPwn&quot;.","og:url":"https:\/\/prohoster.info\/sq\/blog\/news\/uyazvimost-v-chipah-qualcomm-pozvolyayushhaya-atakovat-android-ustrojstvo-cherez-wi-fi","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-10-31T19:14:26+00:00","article:modified_time":"2019-10-31T19:14:26+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"36876","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-22 05:09:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-01 01:37:23","updated":"2026-01-22 05:09:19","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/36876","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/comments?post=36876"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/posts\/36876\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/media?parent=36876"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/categories?post=36876"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/sq\/wp-json\/wp\/v2\/tags?post=36876"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}