ZeroHour

CVE-2019-10580

CVSS 3.1
7.8 high
EPSS
<1%p10
Published
()
Modified
Description

When kernel thread unregistered listener, Use after free issue happened as the listener client`s private data has been already freed in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9607, MSM8909W, Nicobar, QCM2150, QCS405, QCS605, Saipan, SC8180X, SDM429W, SDX55, SM8150, SM8250, SXR2130

Vendors
qualcomm
Products
mdm9607 firmware, msm8909w firmware, nicobar firmware, qcm2150 firmware, qcs405 firmware, qcs605 firmware, saipan firmware, sc8180x firmware, sdm429w firmware, sdx55 firmware, sm8150 firmware, sm8250 firmware
Weakness
CWE-416
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.