CVE-2019-14008

HIGH

Snapdragon Auto/Mobile/Industrial - Null Pointer Dereference

Title source: llm
STIX 2.1

Description

Possible null pointer dereference issue in location assistance data processing due to missing null check on resources before using it in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9150, MDM9607, MDM9650, SDM660, SDM845, SM8150, SM8250, SXR2130

References (1)

Core 1
Core References

Scores

CVSS v3 7.5
EPSS 0.0025
EPSS Percentile 47.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-476
Status published
Products (8)
qualcomm/mdm9150_firmware
qualcomm/mdm9607_firmware
qualcomm/mdm9650_firmware
qualcomm/sdm660_firmware
qualcomm/sdm845_firmware
qualcomm/sm8150_firmware
qualcomm/sm8250_firmware
qualcomm/sxr2130_firmware
Published Jan 21, 2020
Tracked Since Feb 18, 2026