CVE-2019-10602 PUBLISHED CVSS 7.800000190734863 HIGH

Potential use-after-free heap error during Validate/Present calls on display HW composer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9650, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, QCS605, SDA660, SDM845, SDX20, SM8150

EPSS 0.04% · 10.9th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.04%
10.9th percentile

Affected Products

VendorProductVersions
qualcommsdx20_firmware
qualcommmsm8953_firmware
qualcommmsm8920_firmware
qualcommqcs605_firmware
Qualcomm, Inc.Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon WearablesAPQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9650, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, QCS605, SDA660, SDM845, SDX20, SM8150
qualcommsm8150_firmware
qualcommsdm845_firmware
qualcommmsm8996au_firmware
qualcommmdm9206_firmware
qualcommsda660_firmware
qualcommmdm9650_firmware
qualcommmsm8909w_firmware
qualcommapq8098_firmware
qualcommmsm8937_firmware
qualcommmdm9207c_firmware
qualcommapq8096au_firmware
qualcommmdm9607_firmware
qualcommmsm8940_firmware
qualcommapq8053_firmware
qualcommmsm8917_firmware

Timeline

References

Open in Interactive Console →