CVE-2019-14029: Use After Free
Use-after-free in graphics module due to destroying already queued syncobj in error case in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8053, APQ8096AU, APQ8098, MDM9607, MSM8909W, MSM8953, MSM8996AU, Nicobar, QCS405, QCS605, Rennell, SA6155P, Saipan, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM670, SDM710, SDM845, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-14029?
CVE-2019-14029 is considered a high-severity vulnerability due to the potential for exploitation leading to system crashes or information leakage.
How do I fix CVE-2019-14029?
To fix CVE-2019-14029, update your firmware to the latest version provided by your device manufacturer that addresses this vulnerability.
What devices are affected by CVE-2019-14029?
CVE-2019-14029 affects several Qualcomm chipset models including APQ8009, APQ8053, APQ8096AU, APQ8098, and others.
What impact does CVE-2019-14029 have on my device?
CVE-2019-14029 can lead to use-after-free errors that may cause decreased performance or crashes in affected devices.
Is CVE-2019-14029 being actively exploited?
As of the last update, there is no widely reported evidence of active exploitation for CVE-2019-14029, but it is still a serious concern.