First published: Wed Nov 06 2019(Updated: )
Double free issue can happen when sensor power settings is freed by some thread while another thread try to access. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8053, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909, MSM8909W, QCN7605, QCS405, QCS605, SDM845, SDX24, SXR1130
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm APQ8053 Firmware | ||
Qualcomm APQ8053 Firmware | ||
Qualcomm MDM9206 firmware | ||
Qualcomm MDM9206 | ||
qualcomm MDM9207C firmware | ||
qualcomm MDM9207C | ||
Qualcomm MDM9607 firmware | ||
Qualcomm MDM9607 | ||
qualcomm MSM8905 firmware | ||
qualcomm MSM8905 | ||
Qualcomm MSM8909W | ||
Qualcomm MSM8909W | ||
Qualcomm MSM8909W | ||
Qualcomm MSM8909W | ||
qualcomm qcn7605 Firmware | ||
qualcomm qcn7605 | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QCS405 Firmware | ||
Qualcomm QCS605 firmware | ||
Qualcomm QCS605 | ||
qualcomm SDM845 firmware | ||
qualcomm SDM845 | ||
Qualcomm sdx24 firmware | ||
Qualcomm sdx24 | ||
Qualcomm SXR1130 Firmware | ||
Qualcomm SXR1130 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-10565 is classified as a high severity vulnerability due to the potential for exploitation leading to a double free condition.
To mitigate CVE-2019-10565, update the affected Qualcomm firmware to the latest version provided by Qualcomm.
CVE-2019-10565 affects various Qualcomm devices including APQ8053, MDM9206, MDM9207C, MDM9607, MSM8905, MSM8909, and others.
CVE-2019-10565 is a double free vulnerability occurring in multi-threaded environments.
Exploitation of CVE-2019-10565 could lead to application crashes or arbitrary code execution due to memory corruption.