7.8

CVE-2024-21476

Memory corruption when the channel ID passed by user is not validated and further used.

Data is provided by the National Vulnerability Database (NVD)
QualcommAqt1000 Firmware Version-
   QualcommAqt1000 Version-
QualcommAr8035 Firmware Version-
   QualcommAr8035 Version-
QualcommQca1062 Firmware Version-
   QualcommQca1062 Version-
QualcommQca1064 Firmware Version-
   QualcommQca1064 Version-
QualcommQca6391 Firmware Version-
   QualcommQca6391 Version-
QualcommQca6420 Firmware Version-
   QualcommQca6420 Version-
QualcommQca6421 Firmware Version-
   QualcommQca6421 Version-
QualcommQca6426 Firmware Version-
   QualcommQca6426 Version-
QualcommQca6430 Firmware Version-
   QualcommQca6430 Version-
QualcommQca6431 Firmware Version-
   QualcommQca6431 Version-
QualcommQca6436 Firmware Version-
   QualcommQca6436 Version-
QualcommQca8337 Firmware Version-
   QualcommQca8337 Version-
QualcommQsm8250 Firmware Version-
   QualcommQsm8250 Version-
QualcommSc8180x+sdx55 Firmware Version-
   QualcommSc8180x+sdx55 Version-
QualcommSc8380xp Firmware Version-
   QualcommSc8380xp Version-
QualcommSd865 5g Firmware Version-
   QualcommSd865 5g Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
QualcommSc8180x-ad Firmware Version-
   QualcommSc8180x-ad Version-
QualcommSc8180xp-ad Firmware Version-
   QualcommSc8180xp-ad Version-
QualcommSc8180x-aaab Firmware Version-
   QualcommSc8180x-aaab Version-
QualcommSc8180xp-acaf Firmware Version-
   QualcommSc8180xp-acaf Version-
QualcommSc8180x-acaf Firmware Version-
   QualcommSc8180x-acaf Version-
QualcommSc8180xp-aaab Firmware Version-
   QualcommSc8180xp-aaab Version-
QualcommSc8280xp-abbb Firmware Version-
   QualcommSc8280xp-abbb Version-
QualcommSxr2130 Firmware Version-
   QualcommSxr2130 Version-
QualcommWcd9340 Firmware Version-
   QualcommWcd9340 Version-
QualcommWcd9341 Firmware Version-
   QualcommWcd9341 Version-
QualcommWcd9380 Firmware Version-
   QualcommWcd9380 Version-
QualcommWcd9385 Firmware Version-
   QualcommWcd9385 Version-
QualcommWsa8810 Firmware Version-
   QualcommWsa8810 Version-
QualcommWsa8815 Firmware Version-
   QualcommWsa8815 Version-
QualcommWsa8830 Firmware Version-
   QualcommWsa8830 Version-
QualcommWsa8835 Firmware Version-
   QualcommWsa8835 Version-
QualcommWsa8840 Firmware Version-
   QualcommWsa8840 Version-
QualcommWsa8845 Firmware Version-
   QualcommWsa8845 Version-
QualcommWsa8845h Firmware Version-
   QualcommWsa8845h Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.11% 0.305
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
product-security@qualcomm.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.