ZeroHour

CVE-2019-14091

CVSS 3.1
7.8 high
EPSS
<1%p5
Published
()
Modified
Description

Double free issue in NPU due to lack of resource locking mechanism to avoid race condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9607, QCS405, Rennell, Saipan, SC8180X, SDX55, SM8150, SM8250, SXR2130

Vendors
qualcomm
Products
mdm9607 firmware, qcs405 firmware, rennell firmware, saipan firmware, sc8180x firmware, sdx55 firmware, sm8150 firmware, sm8250 firmware, sxr2130 firmware
Weakness
CWE-415, CWE-667
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.