Vulnerability Description
Possible use after free issue while CRM is accessing the link pointer from device private data due to lack of resource protection in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, MDM9206, MDM9207C, MDM9607, QCS605, SDM429W, SDX24, SM8150, SXR1130
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Apq8009 Firmware | - |
| Qualcomm | Apq8009 | - |
| Qualcomm | Mdm9206 Firmware | - |
| Qualcomm | Mdm9206 | - |
| Qualcomm | Mdm9207C Firmware | - |
| Qualcomm | Mdm9207C | - |
| Qualcomm | Mdm9607 Firmware | - |
| Qualcomm | Mdm9607 | - |
| Qualcomm | Qcs605 Firmware | - |
| Qualcomm | Qcs605 | - |
| Qualcomm | Sdm429W Firmware | - |
| Qualcomm | Sdm429W | - |
| Qualcomm | Sdx24 Firmware | - |
| Qualcomm | Sdx24 | - |
| Qualcomm | Sm8150 Firmware | - |
| Qualcomm | Sm8150 | - |
| Qualcomm | Sxr1130 Firmware | - |
| Qualcomm | Sxr1130 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/february-2020-bulletPatchVendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-20-199/Third Party AdvisoryVDB Entry
- https://www.qualcomm.com/company/product-security/bulletins/february-2020-bulletPatchVendor Advisory
- https://www.zerodayinitiative.com/advisories/ZDI-20-199/Third Party AdvisoryVDB Entry
FAQ
What is CVE-2019-14088?
CVE-2019-14088 is a vulnerability with a CVSS score of 7.8 (HIGH). Possible use after free issue while CRM is accessing the link pointer from device private data due to lack of resource protection in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapd...
How severe is CVE-2019-14088?
CVE-2019-14088 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-14088?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Apq8009 Firmware, Qualcomm Apq8009, Qualcomm Mdm9206 Firmware, Qualcomm Mdm9206, Qualcomm Mdm9207C Firmware.