CVE-2019-14032: Use After Free
Memory use after free issue in audio due to lack of resource control in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096AU, APQ8098, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8905, MSM8909W, MSM8953, MSM8996AU, Nicobar, QCS405, QCS605, Rennell, SA6155P, Saipan, SC8180X, SDA845, SDM670, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-14032?
CVE-2019-14032 is classified as a high-severity vulnerability that can lead to a memory use after free condition in affected Qualcomm products.
How do I fix CVE-2019-14032?
To mitigate CVE-2019-14032, update your Qualcomm device firmware to the latest version provided by the manufacturer.
Which devices are affected by CVE-2019-14032?
CVE-2019-14032 affects a range of Qualcomm Snapdragon platforms including APQ8009, APQ8017, and others across various application domains.
What causes the CVE-2019-14032 vulnerability?
CVE-2019-14032 is caused by a lack of resource control in the audio components of Snapdragon chipsets, allowing memory misuse after objects have been freed.
Is CVE-2019-14032 being actively exploited?
As of the latest updates, there is no public evidence that CVE-2019-14032 is being actively exploited in the wild.