CVE-2024-33040

Dec. 12, 2024, 3:21 p.m.

6.7
Medium

Description

Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.

Product(s) Impacted

Vendor Product Versions
Qualcomm
  • Fastconnect 6800 Firmware
  • Fastconnect 6800
  • Fastconnect 6900 Firmware
  • Fastconnect 6900
  • Fastconnect 7800 Firmware
  • Fastconnect 7800
  • Qam8255p Firmware
  • Qam8255p
  • Qca6391 Firmware
  • Qca6391
  • Qca6426 Firmware
  • Qca6426
  • Qca6436 Firmware
  • Qca6436
  • Qca6595au Firmware
  • Qca6595au
  • Qca6678aq Firmware
  • Qca6678aq
  • Sa8255p Firmware
  • Sa8255p
  • Sd865 5g Firmware
  • Sd865 5g
  • Snapdragon 8 Gen 1 Mobile Platform Firmware
  • Snapdragon 8 Gen 1 Mobile Platform
  • Snapdragon 865 5g Mobile Platform Firmware
  • Snapdragon 865 5g Mobile Platform
  • Snapdragon 865\+ 5g Mobile Platform Firmware
  • Snapdragon 865\+ 5g Mobile Platform
  • Snapdragon 870 5g Mobile Platform Firmware
  • Snapdragon 870 5g Mobile Platform
  • Snapdragon W5\+ Gen 1 Wearable Platform Firmware
  • Snapdragon W5\+ Gen 1 Wearable Platform
  • Snapdragon X55 5g Modem-rf System Firmware
  • Snapdragon X55 5g Modem-rf System
  • Snapdragon Xr2 5g Platform Firmware
  • Snapdragon Xr2 5g Platform
  • Sw5100 Firmware
  • Sw5100
  • Sw5100p Firmware
  • Sw5100p
  • Sxr2130 Firmware
  • Sxr2130
  • Wcd9380 Firmware
  • Wcd9380
  • Wcn3660b Firmware
  • Wcn3660b
  • Wcn3680b Firmware
  • Wcn3680b
  • Wcn3980 Firmware
  • Wcn3980
  • Wcn3988 Firmware
  • Wcn3988
  • Wsa8810 Firmware
  • Wsa8810
  • Wsa8815 Firmware
  • Wsa8815
  • Wsa8830 Firmware
  • Wsa8830
  • Wsa8835 Firmware
  • Wsa8835
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -

Weaknesses

Common security weaknesses mapped to this vulnerability.

CWE-416
Use After Free
Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.

*CPE(s)

Affected systems and software identified for this CVE.

Type Vendor Product Version Update Edition Language Software Edition Target Software Target Hardware Other Information
o qualcomm fastconnect_6800_firmware - / / / / / / /
h qualcomm fastconnect_6800 - / / / / / / /
o qualcomm fastconnect_6900_firmware - / / / / / / /
h qualcomm fastconnect_6900 - / / / / / / /
o qualcomm fastconnect_7800_firmware - / / / / / / /
h qualcomm fastconnect_7800 - / / / / / / /
o qualcomm qam8255p_firmware - / / / / / / /
h qualcomm qam8255p - / / / / / / /
o qualcomm qca6391_firmware - / / / / / / /
h qualcomm qca6391 - / / / / / / /
o qualcomm qca6426_firmware - / / / / / / /
h qualcomm qca6426 - / / / / / / /
o qualcomm qca6436_firmware - / / / / / / /
h qualcomm qca6436 - / / / / / / /
o qualcomm qca6595au_firmware - / / / / / / /
h qualcomm qca6595au - / / / / / / /
o qualcomm qca6678aq_firmware - / / / / / / /
h qualcomm qca6678aq - / / / / / / /
o qualcomm sa8255p_firmware - / / / / / / /
h qualcomm sa8255p - / / / / / / /
o qualcomm sd865_5g_firmware - / / / / / / /
h qualcomm sd865_5g - / / / / / / /
o qualcomm snapdragon_8_gen_1_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_8_gen_1_mobile_platform - / / / / / / /
o qualcomm snapdragon_865_5g_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_865_5g_mobile_platform - / / / / / / /
o qualcomm snapdragon_865\+_5g_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_865\+_5g_mobile_platform - / / / / / / /
o qualcomm snapdragon_870_5g_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_870_5g_mobile_platform - / / / / / / /
o qualcomm snapdragon_w5\+_gen_1_wearable_platform_firmware - / / / / / / /
h qualcomm snapdragon_w5\+_gen_1_wearable_platform - / / / / / / /
o qualcomm snapdragon_x55_5g_modem-rf_system_firmware - / / / / / / /
h qualcomm snapdragon_x55_5g_modem-rf_system - / / / / / / /
o qualcomm snapdragon_xr2_5g_platform_firmware - / / / / / / /
h qualcomm snapdragon_xr2_5g_platform - / / / / / / /
o qualcomm sw5100_firmware - / / / / / / /
h qualcomm sw5100 - / / / / / / /
o qualcomm sw5100p_firmware - / / / / / / /
h qualcomm sw5100p - / / / / / / /
o qualcomm sxr2130_firmware - / / / / / / /
h qualcomm sxr2130 - / / / / / / /
o qualcomm wcd9380_firmware - / / / / / / /
h qualcomm wcd9380 - / / / / / / /
o qualcomm wcn3660b_firmware - / / / / / / /
h qualcomm wcn3660b - / / / / / / /
o qualcomm wcn3680b_firmware - / / / / / / /
h qualcomm wcn3680b - / / / / / / /
o qualcomm wcn3980_firmware - / / / / / / /
h qualcomm wcn3980 - / / / / / / /
o qualcomm wcn3988_firmware - / / / / / / /
h qualcomm wcn3988 - / / / / / / /
o qualcomm wsa8810_firmware - / / / / / / /
h qualcomm wsa8810 - / / / / / / /
o qualcomm wsa8815_firmware - / / / / / / /
h qualcomm wsa8815 - / / / / / / /
o qualcomm wsa8830_firmware - / / / / / / /
h qualcomm wsa8830 - / / / / / / /
o qualcomm wsa8835_firmware - / / / / / / /
h qualcomm wsa8835 - / / / / / / /

CVSS Score

6.7 / 10

CVSS Data - 3.1

  • Attack Vector: LOCAL
  • Attack Complexity: LOW
  • Privileges Required: HIGH
  • Scope: UNCHANGED
  • Confidentiality Impact: HIGH
  • Integrity Impact: HIGH
  • Availability Impact: HIGH
  • CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

    View Vector String

Timeline

Published: Dec. 2, 2024, 11:15 a.m.
Last Modified: Dec. 12, 2024, 3:21 p.m.

Status : Analyzed

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

product-security@qualcomm.com

*Disclaimer: Some vulnerabilities do not have an associated CPE. To enhance the data, we use AI to infer CPEs based on CVE details. This is an automated process and might not always be accurate.