CVE-2016-10385 — Use After Free in INC Snapdragon Mobile
Severity
9.8CRITICALNVD
EPSS
0.3%
top 43.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 18
Latest updateMay 14
Description
In all Qualcomm products with Android releases from CAF using the Linux kernel, a use-after-free vulnerability exists in IMS RCS.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9
Affected Packages2 packages
▶CVEListV5qualcomm_inc/snapdragon_mobileSD 210/SD 212/SD 205, SD 430, SD 615/16/SD 415, SD 625, SD 820