7.8

CVE-2024-49832

Memory corruption in Camera due to unusually high number of nodes passed to AXI port.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommQcs6490 Firmware Version-
   QualcommQcs6490 Version-
QualcommSdm429w Firmware Version-
   QualcommSdm429w Version-
QualcommSm8750 Firmware Version-
   QualcommSm8750 Version-
QualcommSm8750p Firmware Version-
   QualcommSm8750p Version-
QualcommWcd9380 Firmware Version-
   QualcommWcd9380 Version-
QualcommWcd9390 Firmware Version-
   QualcommWcd9390 Version-
QualcommWcd9395 Firmware Version-
   QualcommWcd9395 Version-
QualcommWcn3620 Firmware Version-
   QualcommWcn3620 Version-
QualcommWcn3660b Firmware Version-
   QualcommWcn3660b Version-
QualcommWcn7860 Firmware Version-
   QualcommWcn7860 Version-
QualcommWcn7861 Firmware Version-
   QualcommWcn7861 Version-
QualcommWcn7880 Firmware Version-
   QualcommWcn7880 Version-
QualcommWcn7881 Firmware Version-
   QualcommWcn7881 Version-
QualcommWsa8830 Firmware Version-
   QualcommWsa8830 Version-
QualcommWsa8832 Firmware Version-
   QualcommWsa8832 Version-
QualcommWsa8835 Firmware Version-
   QualcommWsa8835 Version-
QualcommWsa8840 Firmware Version-
   QualcommWsa8840 Version-
QualcommWsa8845 Firmware Version-
   QualcommWsa8845 Version-
QualcommWsa8845h Firmware Version-
   QualcommWsa8845h Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.059
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
product-security@qualcomm.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-129 Improper Validation of Array Index

The product uses untrusted input when calculating or using an array index, but the product does not validate or incorrectly validates the index to ensure the index references a valid position within the array.