First published: Mon Mar 02 2020(Updated: )
Use after free issue occurs If the real device interface goes down and a route lookup is performed while sending a raw IPv6 message in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8917, MSM8937, MSM8996AU, QCN7605, SDA845, SDM630, SDM636, SDM660, SDX20, SXR1130
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qualcomm APQ8053 Firmware | ||
Qualcomm APQ8053 Firmware | ||
Qualcomm apq8096au firmware | ||
Qualcomm apq8096au | ||
qualcomm APQ8098 firmware | ||
qualcomm APQ8098 | ||
Qualcomm MDM9206 firmware | ||
Qualcomm MDM9206 | ||
qualcomm MDM9207C firmware | ||
qualcomm MDM9207C | ||
Qualcomm MDM9607 firmware | ||
Qualcomm MDM9607 | ||
qualcomm mdm9640 firmware | ||
qualcomm MDM9640 | ||
Qualcomm MDM9650 firmware | ||
Qualcomm MDM9650 | ||
Qualcomm msm8917 firmware | ||
Qualcomm msm8917 | ||
qualcomm MSM8937 firmware | ||
qualcomm MSM8937 | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm MSM8996AU Firmware | ||
qualcomm qcn7605 Firmware | ||
qualcomm qcn7605 | ||
qualcomm sda845 firmware | ||
qualcomm sda845 | ||
qualcomm SDM630 firmware | ||
qualcomm SDM630 | ||
qualcomm SDM636 firmware | ||
qualcomm SDM636 | ||
qualcomm SDM660 firmware | ||
qualcomm SDM660 | ||
Qualcomm SDX20 Firmware | ||
Qualcomm SDX20 Firmware | ||
Qualcomm SXR1130 Firmware | ||
Qualcomm SXR1130 | ||
Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-10603 has been assigned a high severity rating due to its potential impact on affected Qualcomm devices.
To remediate CVE-2019-10603, ensure that the devices running the affected Qualcomm firmware are updated to the latest security patches released by Qualcomm.
CVE-2019-10603 affects a range of Qualcomm firmware including APQ8053, APQ8096AU, APQ8098, MDM9206, and others listed in the official documentation.
CVE-2019-10603 can lead to use after free vulnerabilities, potentially allowing attackers to exploit the system during raw IPv6 message transmission.
As of now, there is no public evidence that CVE-2019-10603 has been exploited in the wild.