8.1
CVSSv3

CVE-2019-10529

Published: 06/11/2019 Updated: 21/07/2021
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Possible use after free issue due to race condition while attempting to mark the entry pages as dirty using function set_page_dirty() in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm mdm9150 firmware -

qualcomm mdm9206 firmware -

qualcomm mdm9607 firmware -

qualcomm mdm9640 firmware -

qualcomm mdm9650 firmware -

qualcomm msm8909w firmware -

qualcomm msm8996au firmware -

qualcomm qcs405 firmware -

qualcomm qcs605 firmware -

qualcomm qualcomm 215 firmware -

qualcomm sd 210 firmware -

qualcomm sd 212 firmware -

qualcomm sd 205 firmware -

qualcomm sd 425 firmware -

qualcomm sd 439 firmware -

qualcomm sd 429 firmware -

qualcomm sd 450 firmware -

qualcomm sd 615 firmware -

qualcomm sd 616 firmware -

qualcomm sd 415 firmware -

qualcomm sd 625 firmware -

qualcomm sd 632 firmware -

qualcomm sd 636 firmware -

qualcomm sd 665 firmware -

qualcomm sd 675 firmware -

qualcomm sd 712 firmware -

qualcomm sd 710 firmware -

qualcomm sd 670 firmware -

qualcomm sd 730 firmware -

qualcomm sd 820 firmware -

qualcomm sd 820a firmware -

qualcomm sd 835 firmware -

qualcomm sd 845 firmware -

qualcomm sd 850 firmware -

qualcomm sd 855 firmware -

qualcomm sda660 firmware -

qualcomm sdm439 firmware -

qualcomm sdm630 firmware -

qualcomm sdm660 firmware -

qualcomm sdx20 firmware -

qualcomm sdx24 firmware -

Exploits

The following issue exists in the android-msm-wahoo-44-pie branch of androidgooglesourcecom/kernel/msm (and possibly others): When kgsl_mem_entry_destroy() in drivers/gpu/msm/kgslc is called for a writable entry with memtype KGSL_MEM_ENTRY_USER, it attempts to mark the entry's pages as dirty using the function set_page_dirty() This fu ...