CVE-2019-10580 PUBLISHED CVSS 7.800000190734863 HIGH

When kernel thread unregistered listener, Use after free issue happened as the listener client`s private data has been already freed in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9607, MSM8909W, Nicobar, QCM2150, QCS405, QCS605, Saipan, SC8180X, SDM429W, SDX55, SM8150, SM8250, SXR2130

EPSS 0.09% · 25.5th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.09%
25.5th percentile

Affected Products

VendorProductVersions
qualcommmsm8909w_firmware
qualcommsxr2130_firmware
qualcommsdx55_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon WearablesMDM9607, MSM8909W, Nicobar, QCM2150, QCS405, QCS605, Saipan, SC8180X, SDM429W, SDX55, SM8150, SM8250, SXR2130
qualcommsdm429w_firmware
qualcommqcm2150_firmware
qualcommqcs405_firmware
qualcommsaipan_firmware
qualcommmdm9607_firmware
qualcommsc8180x_firmware
qualcommsm8150_firmware
qualcommqcs605_firmware
qualcommsm8250_firmware
qualcommnicobar_firmware

Timeline

References

Open in Interactive Console →