CVE-2019-10585: Use After Free
Possible integer overflow happens when mmap find function will increment refcount every time when it invokes and can lead to use after free issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8053, MDM9607, MDM9640, MSM8909W, MSM8917, MSM8953, Nicobar, QCS605, QM215, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM660, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-10585?
CVE-2019-10585 is rated as high severity due to its potential to lead to use-after-free vulnerabilities.
How do I fix CVE-2019-10585?
To mitigate CVE-2019-10585, apply the latest firmware updates from Qualcomm for the affected devices.
Which devices are affected by CVE-2019-10585?
CVE-2019-10585 affects various Snapdragon devices including APQ8009, APQ8053, and multiple others across different categories.
What type of vulnerability is CVE-2019-10585?
CVE-2019-10585 is an integer overflow vulnerability that can result in use-after-free conditions.
Is CVE-2019-10585 actively being exploited?
As of the current information, there are no public reports confirming active exploitation of CVE-2019-10585.