7.8
CVE-2024-45557
- EPSS 0.19%
- Veröffentlicht 07.04.2025 10:15:48
- Zuletzt bearbeitet 19.08.2025 17:16:21
- Quelle product-security@qualcomm.com
- CVE-Watchlists
- Unerledigt
Use of Out-of-range Pointer Offset in Trust Management Engine
Memory corruption can occur when TME processes addresses from TZ and MPSS requests without proper validation.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Ar8035 Firmware Version-
Qualcomm ≫ Fastconnect 6700 Firmware Version-
Qualcomm ≫ Fastconnect 6900 Firmware Version-
Qualcomm ≫ Fastconnect 7800 Firmware Version-
Qualcomm ≫ Qca6174a Firmware Version-
Qualcomm ≫ Qca6584au Firmware Version-
Qualcomm ≫ Qca6698aq Firmware Version-
Qualcomm ≫ Qca8081 Firmware Version-
Qualcomm ≫ Qca8337 Firmware Version-
Qualcomm ≫ Qcc710 Firmware Version-
Qualcomm ≫ Qcm4490 Firmware Version-
Qualcomm ≫ Qcn6224 Firmware Version-
Qualcomm ≫ Qcn6274 Firmware Version-
Qualcomm ≫ Qcs4490 Firmware Version-
Qualcomm ≫ Qdu1000 Firmware Version-
Qualcomm ≫ Qdu1010 Firmware Version-
Qualcomm ≫ Qdu1110 Firmware Version-
Qualcomm ≫ Qdu1210 Firmware Version-
Qualcomm ≫ Qdx1010 Firmware Version-
Qualcomm ≫ Qdx1011 Firmware Version-
Qualcomm ≫ Qep8111 Firmware Version-
Qualcomm ≫ Qfw7114 Firmware Version-
Qualcomm ≫ Qfw7124 Firmware Version-
Qualcomm ≫ Qru1032 Firmware Version-
Qualcomm ≫ Qru1052 Firmware Version-
Qualcomm ≫ Qru1062 Firmware Version-
Qualcomm ≫ Sc8380xp Firmware Version-
Qualcomm ≫ Sd 8 Gen1 5g Firmware Version-
Qualcomm ≫ Sm8635 Firmware Version-
Qualcomm ≫ Snapdragon Ar2 Gen 1 Platform Firmware Version-
Qualcomm ≫ Ssg2115p Firmware Version-
Qualcomm ≫ Ssg2125p Firmware Version-
Qualcomm ≫ Sxr1230p Firmware Version-
Qualcomm ≫ Sxr2230p Firmware Version-
Qualcomm ≫ Talynplus Firmware Version-
Qualcomm ≫ Wcd9340 Firmware Version-
Qualcomm ≫ Wcd9370 Firmware Version-
Qualcomm ≫ Wcd9375 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Wcd9385 Firmware Version-
Qualcomm ≫ Wcd9390 Firmware Version-
Qualcomm ≫ Wcd9395 Firmware Version-
Qualcomm ≫ Wcn3950 Firmware Version-
Qualcomm ≫ Wcn3988 Firmware Version-
Qualcomm ≫ Wcn6755 Firmware Version-
Qualcomm ≫ Wsa8810 Firmware Version-
Qualcomm ≫ Wsa8815 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wsa8832 Firmware Version-
Qualcomm ≫ Wsa8835 Firmware Version-
Qualcomm ≫ Wsa8840 Firmware Version-
Qualcomm ≫ Wsa8845 Firmware Version-
Qualcomm ≫ Wsa8845h Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.19% | 0.402 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| product-security@qualcomm.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-823 Use of Out-of-range Pointer Offset
The product performs pointer arithmetic on a valid pointer, but it uses an offset that can point outside of the intended range of valid memory locations for the resulting pointer.