PT-2019-11911 · Qualcomm · Sd 855+14

Published

2019-12-12

·

Updated

2020-08-24

·

CVE-2019-10520

CVSS v2.0

4.9

Medium

VectorAV:L/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon Mobile, Snapdragon Voice & Music versions (affected versions not specified)
Description The issue allows an unprivileged application to allocate GPU memory by calling a memory allocation ioctl function, potentially exhausting all the memory and resulting in an out of memory condition. This affects various Qualcomm Snapdragon products, including QCS405, SD 210/SD 212/SD 205, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 845 / SD 850, and SD 855.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Missing Release of Resource after Effective Lifetime

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-10520

Affected Products

Qcs405
Sd 205
Sd 210
Sd 212
Sd 665
Sd 670
Sd 675
Sd 710
Sd 712
Sd 730
Sd 845
Sd 850
Sd 855
Snapdragon Mobile
Snapdragon Voice & Music