CVE-2019-10596

HIGH

Snapdragon Auto-SDM670 - Info Disclosure

Title source: llm
STIX 2.1

Description

u'Improper access control can lead signed process to guess pid of other processes and access their address space' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in Bitra, Nicobar, QCS605, QCS610, Rennell, SA6155P, Saipan, SC7180, SC8180X, SDM670, SDM710, SDM845, SDM850, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130

Scores

CVSS v3 7.8
EPSS 0.0003
EPSS Percentile 9.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (19)
qualcomm/bitra_firmware
qualcomm/nicobar_firmware
qualcomm/qcs605_firmware
qualcomm/qcs610_firmware
qualcomm/rennell_firmware
qualcomm/sa6155p_firmware
qualcomm/saipan_firmware
qualcomm/sc7180_firmware
qualcomm/sc8180x_firmware
qualcomm/sdm670_firmware
... and 9 more
Published Sep 08, 2020
Tracked Since Feb 18, 2026