CVE-2019-10484
—CVSS 3.1
5.5 medium
EPSS
<1%p7
Published
()
Modified
Description
Use after free issue occurs when command destructors access dynamically allocated response buffer which is already deallocated during previous command teardwon sequence in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8098, MSM8909W, Nicobar, QCS405, QCS605, SDA845, SDM660, SDM670, SDM710, SDM845, SDX24, SM6150, SM7150, SM8150, SM8250, SXR2130
- Vendors
- qualcomm
- Products
- apq8098 firmware, msm8909w firmware, nicobar firmware, qcs405 firmware, qcs605 firmware, sda845 firmware, sdm660 firmware, sdm670 firmware, sdm710 firmware, sdm845 firmware, sdx24 firmware, sm6150 firmware
- Weakness
- CWE-416
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.