7.8

CVE-2024-45580

Memory corruption while handling multuple IOCTL calls from userspace for remote invocation.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommQmp1000 Firmware Version-
   QualcommQmp1000
QualcommSdm429w Firmware Version-
   QualcommSdm429w
QualcommSm8735 Firmware Version-
   QualcommSm8735
QualcommSm8750 Firmware Version-
   QualcommSm8750
QualcommSm8750p Firmware Version-
   QualcommSm8750p
QualcommSsg2115p Firmware Version-
   QualcommSsg2115p
QualcommSsg2125p Firmware Version-
   QualcommSsg2125p
QualcommSxr1230p Firmware Version-
   QualcommSxr1230p
QualcommSxr2230p Firmware Version-
   QualcommSxr2230p
QualcommSxr2250p Firmware Version-
   QualcommSxr2250p
QualcommSxr2330p Firmware Version-
   QualcommSxr2330p
QualcommWcd9378 Firmware Version-
   QualcommWcd9378
QualcommWcd9380 Firmware Version-
   QualcommWcd9380
QualcommWcd9385 Firmware Version-
   QualcommWcd9385
QualcommWcd9390 Firmware Version-
   QualcommWcd9390
QualcommWcd9395 Firmware Version-
   QualcommWcd9395
QualcommWcn3620 Firmware Version-
   QualcommWcn3620
QualcommWcn3660b Firmware Version-
   QualcommWcn3660b
QualcommWcn3680b Firmware Version-
   QualcommWcn3680b
QualcommWcn3980 Firmware Version-
   QualcommWcn3980
QualcommWcn7750 Firmware Version-
   QualcommWcn7750
QualcommWcn7860 Firmware Version-
   QualcommWcn7860
QualcommWcn7861 Firmware Version-
   QualcommWcn7861
QualcommWcn7880 Firmware Version-
   QualcommWcn7880
QualcommWcn7881 Firmware Version-
   QualcommWcn7881
QualcommWsa8830 Firmware Version-
   QualcommWsa8830
QualcommWsa8832 Firmware Version-
   QualcommWsa8832
QualcommWsa8835 Firmware Version-
   QualcommWsa8835
QualcommWsa8840 Firmware Version-
   QualcommWsa8840
QualcommWsa8845 Firmware Version-
   QualcommWsa8845
QualcommWsa8845h Firmware Version-
   QualcommWsa8845h
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.061
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
product-security@qualcomm.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-416 Use After Free

The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory "belongs" to the code that operates on the new pointer.