CVE-2019-10621

HIGH

Qualcomm Multiple Chipsets Firmware - Use-After-Free in MAP/UNMAP Data Structure

Title source: llm
STIX 2.1

Description

Use after free issue when MAP and UNMAP calls at same time as data structure used my MAP may be freed by UNMAP function in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in Nicobar, QCS405, Rennell, Saipan, SC8180X, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0004
EPSS Percentile 13.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-416
Status published
Products (11)
qualcomm/nicobar_firmware
qualcomm/qcs405_firmware
qualcomm/rennell_firmware
qualcomm/saipan_firmware
qualcomm/sc8180x_firmware
qualcomm/sdx55_firmware
qualcomm/sm6150_firmware
qualcomm/sm7150_firmware
qualcomm/sm8150_firmware
qualcomm/sm8250_firmware
... and 1 more
Published Apr 16, 2020
Tracked Since Feb 18, 2026