CVE-2019-10548: Use After Free
While trying to obtain datad ipc handle during DPL initialization, Heap use-after-free issue can occur if modem SSR occurs at same time in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8939, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCA6574AU, QCS605, QM215, SDA660, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SM6150, SM7150, SM8150, SXR1130
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10548?
CVE-2019-10548 has a high severity rating due to the potential for exploitation through a heap use-after-free vulnerability.
How can I fix CVE-2019-10548?
To fix CVE-2019-10548, ensure that you apply the latest firmware updates provided by Qualcomm for the affected devices.
Which devices are affected by CVE-2019-10548?
CVE-2019-10548 affects various Qualcomm chipset firmware including APQ8009, APQ8053, MSM8909, and others.
Can CVE-2019-10548 be exploited remotely?
Yes, CVE-2019-10548 can potentially be exploited remotely through malicious applications or codes targeting the vulnerable firmware.
What are the consequences of an exploit of CVE-2019-10548?
Exploitation of CVE-2019-10548 could lead to denial of service, data leakage, or unauthorized access to device functionalities.