CVE-2019-10629

HIGH

Qualcomm Bitra Firmware - Memory Corruption via Crafted Page in API

Title source: llm
STIX 2.1

Description

u'User Process can potentially corrupt kernel virtual page by passing a crafted page in API' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in Bitra, IPQ6018, IPQ8074, MDM9205, Nicobar, QCA8081, QCN7605, QCS404, QCS405, QCS605, QCS610, Rennell, SA415M, SA6155P, Saipan, SC7180, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130

Scores

CVSS v3 7.8
EPSS 0.0003
EPSS Percentile 9.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-129
Status published
Products (31)
qualcomm/bitra_firmware
qualcomm/ipq6018_firmware
qualcomm/ipq8074_firmware
qualcomm/mdm9205_firmware
qualcomm/nicobar_firmware
qualcomm/qca8081_firmware
qualcomm/qcn7605_firmware
qualcomm/qcs404_firmware
qualcomm/qcs405_firmware
qualcomm/qcs605_firmware
... and 21 more
Published Sep 08, 2020
Tracked Since Feb 18, 2026