CVE-2019-10549

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
05/03/2020
Last modified:
07/03/2020

Description

Null pointer dereference issue can happen due to improper validation of CSEQ header response received from network in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, Nicobar, QCM2150, QM215, Rennell, SC8180X, SDM429, SDM429W, SDM439, SDM450, SDM632, SDX24, SDX55, SM6150, SM7150, SM8150

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:qualcomm:msm8905_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8905:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:msm8909_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8909:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:msm8917_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8917:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:msm8920_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8920:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:msm8937_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8937:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:msm8940_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8940:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:msm8953_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:msm8953:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:nicobar_firmware:-:*:*:*:*:*:*:*