ZeroHour

CVE-2019-10612

CVSS 3.1
9.8 critical
EPSS
<1%p58
Published
()
Modified
Description

UTCB object has a function pointer called by the reaper to deallocate its memory resources and this address can potentially be corrupted by stack overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in MDM9205, MDM9650, QCS605, SA6155P, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130

Vendors
qualcomm
Products
mdm9205 firmware, mdm9650 firmware, qcs605 firmware, sa6155p firmware, sc8180x firmware, sda845 firmware, sdm670 firmware, sdm710 firmware, sdm845 firmware, sdm850 firmware, sdx55 firmware, sm6150 firmware
Weakness
CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.