CVE-2019-10538

CRITICAL

Qualcomm MSM8909W and other Snapdragon Firmware - Memory Corruption via Arbitrary Page Response

Title source: llm
STIX 2.1

Description

Lack of check of address range received from firmware response allows modem to respond arbitrary pages into its address range which can compromise HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 425, SD 439 / SD 429, SD 450, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820A, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM660, SDX20, SDX24

References (1)

Core 1
Core References

Scores

CVSS v3 9.8
EPSS 0.0035
EPSS Percentile 57.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-20
Status published
Products (27)
qualcomm/msm8909w_firmware
qualcomm/msm8996au_firmware
qualcomm/qcs405_firmware
qualcomm/qcs605_firmware
qualcomm/qualcomm_215_firmware
qualcomm/sd_425_firmware
qualcomm/sd_429_firmware
qualcomm/sd_439_firmware
qualcomm/sd_450_firmware
qualcomm/sd_625_firmware
... and 17 more
Published Sep 30, 2019
Tracked Since Feb 18, 2026