CVE-2019-10528: Use After Free
Use after free issue in kernel while accessing freed mdlog session info and its attributes after closing the session in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 675, SD 730, SD 820, SD 820A, SD 835, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2019-10528.
What software is affected by this vulnerability?
The vulnerability affects Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9206, MDM9607.
What is the severity of CVE-2019-10528?
The severity of CVE-2019-10528 is critical with a score of 9.8.
How can I fix this vulnerability?
To fix this vulnerability, it is recommended to update to a patched version of the affected software.
Where can I find more information about this vulnerability?
More information about this vulnerability can be found at the following reference: [https://source.android.com/security/bulletin/](https://source.android.com/security/bulletin/)