7.8
CVE-2024-45574
- EPSS 0.01%
- Veröffentlicht 06.05.2025 08:32:04
- Zuletzt bearbeitet 09.05.2025 19:15:13
- Quelle product-security@qualcomm.com
- Teams Watchlist Login
- Unerledigt Login
Memory corruption during array access in Camera kernel due to invalid index from invalid command data.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Sdm429w Firmware Version-
Qualcomm ≫ Snapdragon 429 Mobile Firmware Version-
Qualcomm ≫ Wcn3620 Firmware Version-
Qualcomm ≫ Wcn3660b Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.01% | 0.019 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
product-security@qualcomm.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-129 Improper Validation of Array Index
The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.