CVE-2019-14008
HIGHSnapdragon Auto/Mobile/Industrial - Null Pointer Dereference
Title source: llmDescription
Possible null pointer dereference issue in location assistance data processing due to missing null check on resources before using it in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in MDM9150, MDM9607, MDM9650, SDM660, SDM845, SM8150, SM8250, SXR2130
References (1)
Core 1
Core References
Vendor Advisory x_refsource_confirm
https://www.qualcomm.com/company/product-security/bulletins/january-2020-bulletin
Scores
CVSS v3
7.5
EPSS
0.0025
EPSS Percentile
47.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-476
Status
published
Products (8)
qualcomm/mdm9150_firmware
qualcomm/mdm9607_firmware
qualcomm/mdm9650_firmware
qualcomm/sdm660_firmware
qualcomm/sdm845_firmware
qualcomm/sm8150_firmware
qualcomm/sm8250_firmware
qualcomm/sxr2130_firmware
Published
Jan 21, 2020
Tracked Since
Feb 18, 2026