CVE-2019-10529
Qualcomm Android - Kernel Use-After-Free via Incorrect set_page_dirty() in KGSL
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Possible use after free issue due to race condition while attempting to mark the entry pages as dirty using function set_page_dirty() in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24
Un posible problema de uso de la memoria previamente liberada debido a una condición de carrera durante el intento de marcar las páginas de entrada como sucias usando la función set_page_dirty() en los productos Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables en las versiones MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS405, QCS605, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 450, SD 615/16/SD 415, SD 625, SD 632, SD 636, SD 665, SD 675, SD 712 / SD 710 / SD 670, SD 730, SD 820, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24.
The Qualcomm Android kernel suffers from a use-after-free vulnerability via an incorrect set_page_dirty() in KGSL.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-03-29 CVE Reserved
- 2019-05-29 CVE Published
- 2019-05-29 First Exploit
- 2024-08-04 CVE Updated
- 2024-11-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
- CWE-416: Use After Free
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/46941 | 2019-05-29 |
URL | Date | SRC |
---|---|---|
https://source.android.com/security/bulletin | 2021-07-21 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Qualcomm Search vendor "Qualcomm" | Mdm9150 Firmware Search vendor "Qualcomm" for product "Mdm9150 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9150 Search vendor "Qualcomm" for product "Mdm9150" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Mdm9206 Firmware Search vendor "Qualcomm" for product "Mdm9206 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9206 Search vendor "Qualcomm" for product "Mdm9206" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Mdm9607 Firmware Search vendor "Qualcomm" for product "Mdm9607 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9607 Search vendor "Qualcomm" for product "Mdm9607" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Mdm9640 Firmware Search vendor "Qualcomm" for product "Mdm9640 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9640 Search vendor "Qualcomm" for product "Mdm9640" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Mdm9650 Firmware Search vendor "Qualcomm" for product "Mdm9650 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Mdm9650 Search vendor "Qualcomm" for product "Mdm9650" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Msm8909w Firmware Search vendor "Qualcomm" for product "Msm8909w Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Msm8909w Search vendor "Qualcomm" for product "Msm8909w" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Msm8996au Firmware Search vendor "Qualcomm" for product "Msm8996au Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Msm8996au Search vendor "Qualcomm" for product "Msm8996au" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Qcs405 Firmware Search vendor "Qualcomm" for product "Qcs405 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Qcs405 Search vendor "Qualcomm" for product "Qcs405" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Qcs605 Firmware Search vendor "Qualcomm" for product "Qcs605 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Qcs605 Search vendor "Qualcomm" for product "Qcs605" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Qualcomm 215 Firmware Search vendor "Qualcomm" for product "Qualcomm 215 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Qualcomm 215 Search vendor "Qualcomm" for product "Qualcomm 215" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 210 Firmware Search vendor "Qualcomm" for product "Sd 210 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 210 Search vendor "Qualcomm" for product "Sd 210" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 212 Firmware Search vendor "Qualcomm" for product "Sd 212 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 212 Search vendor "Qualcomm" for product "Sd 212" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 205 Firmware Search vendor "Qualcomm" for product "Sd 205 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 205 Search vendor "Qualcomm" for product "Sd 205" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 425 Firmware Search vendor "Qualcomm" for product "Sd 425 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 425 Search vendor "Qualcomm" for product "Sd 425" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 439 Firmware Search vendor "Qualcomm" for product "Sd 439 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 439 Search vendor "Qualcomm" for product "Sd 439" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 429 Firmware Search vendor "Qualcomm" for product "Sd 429 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 429 Search vendor "Qualcomm" for product "Sd 429" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 450 Firmware Search vendor "Qualcomm" for product "Sd 450 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 450 Search vendor "Qualcomm" for product "Sd 450" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 615 Firmware Search vendor "Qualcomm" for product "Sd 615 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 615 Search vendor "Qualcomm" for product "Sd 615" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 616 Firmware Search vendor "Qualcomm" for product "Sd 616 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 616 Search vendor "Qualcomm" for product "Sd 616" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 415 Firmware Search vendor "Qualcomm" for product "Sd 415 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 415 Search vendor "Qualcomm" for product "Sd 415" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 625 Firmware Search vendor "Qualcomm" for product "Sd 625 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 625 Search vendor "Qualcomm" for product "Sd 625" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 632 Firmware Search vendor "Qualcomm" for product "Sd 632 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 632 Search vendor "Qualcomm" for product "Sd 632" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 636 Firmware Search vendor "Qualcomm" for product "Sd 636 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 636 Search vendor "Qualcomm" for product "Sd 636" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 665 Firmware Search vendor "Qualcomm" for product "Sd 665 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 665 Search vendor "Qualcomm" for product "Sd 665" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 675 Firmware Search vendor "Qualcomm" for product "Sd 675 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 675 Search vendor "Qualcomm" for product "Sd 675" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 712 Firmware Search vendor "Qualcomm" for product "Sd 712 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 712 Search vendor "Qualcomm" for product "Sd 712" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 710 Firmware Search vendor "Qualcomm" for product "Sd 710 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 710 Search vendor "Qualcomm" for product "Sd 710" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 670 Firmware Search vendor "Qualcomm" for product "Sd 670 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 670 Search vendor "Qualcomm" for product "Sd 670" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 730 Firmware Search vendor "Qualcomm" for product "Sd 730 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 730 Search vendor "Qualcomm" for product "Sd 730" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 820 Firmware Search vendor "Qualcomm" for product "Sd 820 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 820 Search vendor "Qualcomm" for product "Sd 820" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 820a Firmware Search vendor "Qualcomm" for product "Sd 820a Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 820a Search vendor "Qualcomm" for product "Sd 820a" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 835 Firmware Search vendor "Qualcomm" for product "Sd 835 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 835 Search vendor "Qualcomm" for product "Sd 835" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 845 Firmware Search vendor "Qualcomm" for product "Sd 845 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 845 Search vendor "Qualcomm" for product "Sd 845" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 850 Firmware Search vendor "Qualcomm" for product "Sd 850 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 850 Search vendor "Qualcomm" for product "Sd 850" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sd 855 Firmware Search vendor "Qualcomm" for product "Sd 855 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sd 855 Search vendor "Qualcomm" for product "Sd 855" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sda660 Firmware Search vendor "Qualcomm" for product "Sda660 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sda660 Search vendor "Qualcomm" for product "Sda660" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdm439 Firmware Search vendor "Qualcomm" for product "Sdm439 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdm439 Search vendor "Qualcomm" for product "Sdm439" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdm630 Firmware Search vendor "Qualcomm" for product "Sdm630 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdm630 Search vendor "Qualcomm" for product "Sdm630" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdm660 Firmware Search vendor "Qualcomm" for product "Sdm660 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdm660 Search vendor "Qualcomm" for product "Sdm660" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdx20 Firmware Search vendor "Qualcomm" for product "Sdx20 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdx20 Search vendor "Qualcomm" for product "Sdx20" | - | - |
Safe
|
Qualcomm Search vendor "Qualcomm" | Sdx24 Firmware Search vendor "Qualcomm" for product "Sdx24 Firmware" | - | - |
Affected
| in | Qualcomm Search vendor "Qualcomm" | Sdx24 Search vendor "Qualcomm" for product "Sdx24" | - | - |
Safe
|