CVE-2019-10494: Race Condition
Race condition between the camera functions due to lack of resource lock which will lead to memory corruption and UAF issue in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCN7605, QCS405, QCS605, QM215, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDX20, SDX24, SM6150, SM7150, SM8150
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10494?
CVE-2019-10494 has a severity rating of high due to the potential for memory corruption and use-after-free issues.
How do I fix CVE-2019-10494?
To fix CVE-2019-10494, users should update the affected Qualcomm firmware to the latest version provided by the manufacturer.
What systems are affected by CVE-2019-10494?
CVE-2019-10494 affects multiple Qualcomm platforms including Snapdragon Auto, Consumer Electronics, Industrial IoT, and Mobile.
What risk does CVE-2019-10494 pose to users?
CVE-2019-10494 can lead to memory corruption and unauthorized access, potentially compromising system security.
Is CVE-2019-10494 a permanent issue in Qualcomm devices?
No, CVE-2019-10494 is a vulnerability that can be mitigated through the application of firmware updates.