8.4

CVE-2024-21470

Memory corruption while allocating memory for graphics.

Data is provided by the National Vulnerability Database (NVD)
QualcommAqt1000 Firmware Version-
   QualcommAqt1000 Version-
QualcommQca6391 Firmware Version-
   QualcommQca6391 Version-
QualcommQca6420 Firmware Version-
   QualcommQca6420 Version-
QualcommQca6430 Firmware Version-
   QualcommQca6430 Version-
QualcommSc8180x+sdx55 Firmware Version-
   QualcommSc8180x+sdx55 Version-
QualcommSc8380xp Firmware Version-
   QualcommSc8380xp Version-
QualcommSm6250 Firmware Version-
   QualcommSm6250 Version-
QualcommSc8180x-ad Firmware Version-
   QualcommSc8180x-ad Version-
QualcommSc8180xp-ad Firmware Version-
   QualcommSc8180xp-ad Version-
QualcommSc8180x-aaab Firmware Version-
   QualcommSc8180x-aaab Version-
QualcommSc8180xp-acaf Firmware Version-
   QualcommSc8180xp-acaf Version-
QualcommSc8180x-acaf Firmware Version-
   QualcommSc8180x-acaf Version-
QualcommSc8180xp-aaab Firmware Version-
   QualcommSc8180xp-aaab Version-
QualcommSc8280xp-abbb Firmware Version-
   QualcommSc8280xp-abbb Version-
QualcommWcd9340 Firmware Version-
   QualcommWcd9340 Version-
QualcommWcd9341 Firmware Version-
   QualcommWcd9341 Version-
QualcommWcd9380 Firmware Version-
   QualcommWcd9380 Version-
QualcommWcd9385 Firmware Version-
   QualcommWcd9385 Version-
QualcommWsa8810 Firmware Version-
   QualcommWsa8810 Version-
QualcommWsa8815 Firmware Version-
   QualcommWsa8815 Version-
QualcommWsa8830 Firmware Version-
   QualcommWsa8830 Version-
QualcommWsa8835 Firmware Version-
   QualcommWsa8835 Version-
QualcommWsa8840 Firmware Version-
   QualcommWsa8840 Version-
QualcommWsa8845 Firmware Version-
   QualcommWsa8845 Version-
QualcommWsa8845h Firmware Version-
   QualcommWsa8845h Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.192
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
product-security@qualcomm.com 8.4 2.5 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-190 Integer Overflow or Wraparound

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

CWE-680 Integer Overflow to Buffer Overflow

The product performs a calculation to determine how much memory to allocate, but an integer overflow can occur that causes less memory to be allocated than expected, leading to a buffer overflow.