MEDIUM · 5.5

CVE-2019-10545

Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile...

Vulnerability Description

Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music in QCS605, SDM670, SDM710, SM6150, SM7150, SM8150

CVSS Score

5.5

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
QualcommQcs605 Firmware-
QualcommQcs605-
QualcommSdm670 Firmware-
QualcommSdm670-
QualcommSdm710 Firmware-
QualcommSdm710-
QualcommSm6150 Firmware-
QualcommSm6150-
QualcommSm7150 Firmware-
QualcommSm7150-
QualcommSm8150 Firmware-
QualcommSm8150-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-10545?

CVE-2019-10545 is a vulnerability with a CVSS score of 5.5 (MEDIUM). Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile...

How severe is CVE-2019-10545?

CVE-2019-10545 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-10545?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Qcs605 Firmware, Qualcomm Qcs605, Qualcomm Sdm670 Firmware, Qualcomm Sdm670, Qualcomm Sdm710 Firmware.