7.8

CVE-2024-45566

Use After Free in Camera Driver

Memory corruption during concurrent buffer access due to modification of the reference count.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Fastconnect 6800 Firmware Version -
   Qualcomm ≫ Fastconnect 6800 Version -
Qualcomm ≫ Fastconnect 6900 Firmware Version -
   Qualcomm ≫ Fastconnect 6900 Version -
Qualcomm ≫ Fastconnect 7800 Firmware Version -
   Qualcomm ≫ Fastconnect 7800 Version -
Qualcomm ≫ Qca6391 Firmware Version -
   Qualcomm ≫ Qca6391 Version -
Qualcomm ≫ Qca6426 Firmware Version -
   Qualcomm ≫ Qca6426 Version -
Qualcomm ≫ Qca6436 Firmware Version -
   Qualcomm ≫ Qca6436 Version -
Qualcomm ≫ Sd865 5g Firmware Version -
   Qualcomm ≫ Sd865 5g Version -
Qualcomm ≫ Sdm429w Firmware Version -
   Qualcomm ≫ Sdm429w Version -
Qualcomm ≫ Sxr2130 Firmware Version -
   Qualcomm ≫ Sxr2130 Version -
Qualcomm ≫ Wcd9380 Firmware Version -
   Qualcomm ≫ Wcd9380 Version -
Qualcomm ≫ Wcn3620 Firmware Version -
   Qualcomm ≫ Wcn3620 Version -
Qualcomm ≫ Wcn3660b Firmware Version -
   Qualcomm ≫ Wcn3660b Version -
Qualcomm ≫ Wsa8810 Firmware Version -
   Qualcomm ≫ Wsa8810 Version -
Qualcomm ≫ Wsa8815 Firmware Version -
   Qualcomm ≫ Wsa8815 Version -
Qualcomm ≫ Wsa8830 Firmware Version -
   Qualcomm ≫ Wsa8830 Version -
Qualcomm ≫ Wsa8835 Firmware Version -
   Qualcomm ≫ Wsa8835 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.11% 0.014
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Qualcomm 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-416 Use After Free

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.

https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html
Patch