7.8

CVE-2024-21482

Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.

Data is provided by the National Vulnerability Database (NVD)
QualcommCsr8811 Firmware Version-
   QualcommCsr8811 Version-
QualcommIpq5010 Firmware Version-
   QualcommIpq5010 Version-
QualcommIpq5028 Firmware Version-
   QualcommIpq5028 Version-
QualcommIpq5302 Firmware Version-
   QualcommIpq5302 Version-
QualcommIpq5312 Firmware Version-
   QualcommIpq5312 Version-
QualcommIpq5332 Firmware Version-
   QualcommIpq5332 Version-
QualcommIpq6000 Firmware Version-
   QualcommIpq6000 Version-
QualcommIpq6010 Firmware Version-
   QualcommIpq6010 Version-
QualcommIpq6018 Firmware Version-
   QualcommIpq6018 Version-
QualcommIpq6028 Firmware Version-
   QualcommIpq6028 Version-
QualcommIpq8070a Firmware Version-
   QualcommIpq8070a Version-
QualcommIpq8071a Firmware Version-
   QualcommIpq8071a Version-
QualcommIpq8072a Firmware Version-
   QualcommIpq8072a Version-
QualcommIpq8074a Firmware Version-
   QualcommIpq8074a Version-
QualcommIpq8076 Firmware Version-
   QualcommIpq8076 Version-
QualcommIpq8076a Firmware Version-
   QualcommIpq8076a Version-
QualcommIpq8078 Firmware Version-
   QualcommIpq8078 Version-
QualcommIpq8078a Firmware Version-
   QualcommIpq8078a Version-
QualcommIpq8173 Firmware Version-
   QualcommIpq8173 Version-
QualcommIpq8174 Firmware Version-
   QualcommIpq8174 Version-
QualcommIpq9008 Firmware Version-
   QualcommIpq9008 Version-
QualcommIpq9554 Firmware Version-
   QualcommIpq9554 Version-
QualcommIpq9570 Firmware Version-
   QualcommIpq9570 Version-
QualcommIpq9574 Firmware Version-
   QualcommIpq9574 Version-
QualcommQca4024 Firmware Version-
   QualcommQca4024 Version-
QualcommQca8075 Firmware Version-
   QualcommQca8075 Version-
QualcommQca8081 Firmware Version-
   QualcommQca8081 Version-
QualcommQca8082 Firmware Version-
   QualcommQca8082 Version-
QualcommQca8084 Firmware Version-
   QualcommQca8084 Version-
QualcommQca8085 Firmware Version-
   QualcommQca8085 Version-
QualcommQca8386 Firmware Version-
   QualcommQca8386 Version-
QualcommQca9888 Firmware Version-
   QualcommQca9888 Version-
QualcommQca9889 Firmware Version-
   QualcommQca9889 Version-
QualcommQcf8000 Firmware Version-
   QualcommQcf8000 Version-
QualcommQcf8001 Firmware Version-
   QualcommQcf8001 Version-
QualcommQcn5022 Firmware Version-
   QualcommQcn5022 Version-
QualcommQcn5024 Firmware Version-
   QualcommQcn5024 Version-
QualcommQcn5052 Firmware Version-
   QualcommQcn5052 Version-
QualcommQcn5122 Firmware Version-
   QualcommQcn5122 Version-
QualcommQcn5124 Firmware Version-
   QualcommQcn5124 Version-
QualcommQcn5152 Firmware Version-
   QualcommQcn5152 Version-
QualcommQcn5154 Firmware Version-
   QualcommQcn5154 Version-
QualcommQcn5164 Firmware Version-
   QualcommQcn5164 Version-
QualcommQcn6023 Firmware Version-
   QualcommQcn6023 Version-
QualcommQcn6024 Firmware Version-
   QualcommQcn6024 Version-
QualcommQcn6112 Firmware Version-
   QualcommQcn6112 Version-
QualcommQcn6122 Firmware Version-
   QualcommQcn6122 Version-
QualcommQcn6132 Firmware Version-
   QualcommQcn6132 Version-
QualcommQcn6402 Firmware Version-
   QualcommQcn6402 Version-
QualcommQcn6412 Firmware Version-
   QualcommQcn6412 Version-
QualcommQcn6422 Firmware Version-
   QualcommQcn6422 Version-
QualcommQcn6432 Firmware Version-
   QualcommQcn6432 Version-
QualcommQcn9000 Firmware Version-
   QualcommQcn9000 Version-
QualcommQcn9022 Firmware Version-
   QualcommQcn9022 Version-
QualcommQcn9024 Firmware Version-
   QualcommQcn9024 Version-
QualcommQcn9070 Firmware Version-
   QualcommQcn9070 Version-
QualcommQcn9072 Firmware Version-
   QualcommQcn9072 Version-
QualcommQcn9074 Firmware Version-
   QualcommQcn9074 Version-
QualcommQcn9100 Firmware Version-
   QualcommQcn9100 Version-
QualcommQcn9274 Firmware Version-
   QualcommQcn9274 Version-
QualcommSdx55 Firmware Version-
   QualcommSdx55 Version-
QualcommSdx65m Firmware Version-
   QualcommSdx65m Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.01% 0.014
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
product-security@qualcomm.com 6.8 0.9 5.9
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.