CVE-2024-33067

Jan. 10, 2025, 3:39 p.m.

6.1
Medium

Description

Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.

Product(s) Impacted

Vendor Product Versions
Qualcomm
  • Ar8035 Firmware
  • Ar8035
  • C-v2x 9150 Firmware
  • C-v2x 9150
  • Csrb31024 Firmware
  • Csrb31024
  • Fastconnect 6800 Firmware
  • Fastconnect 6800
  • Fastconnect 6900 Firmware
  • Fastconnect 6900
  • Fastconnect 7800 Firmware
  • Fastconnect 7800
  • Msm8996au Firmware
  • Msm8996au
  • Qam8295p Firmware
  • Qam8295p
  • Qca6310 Firmware
  • Qca6310
  • Qca6320 Firmware
  • Qca6320
  • Qca6391 Firmware
  • Qca6391
  • Qca6426 Firmware
  • Qca6426
  • Qca6436 Firmware
  • Qca6436
  • Qca6564a Firmware
  • Qca6564a
  • Qca6564au Firmware
  • Qca6564au
  • Qca6574a Firmware
  • Qca6574a
  • Qca6574au Firmware
  • Qca6574au
  • Qca6584au Firmware
  • Qca6584au
  • Qca6595au Firmware
  • Qca6595au
  • Qca6696 Firmware
  • Qca6696
  • Qca6698aq Firmware
  • Qca6698aq
  • Qca8081 Firmware
  • Qca8081
  • Qca8337 Firmware
  • Qca8337
  • Qca9367 Firmware
  • Qca9367
  • Qca9377 Firmware
  • Qca9377
  • Qcc710 Firmware
  • Qcc710
  • Qcn6224 Firmware
  • Qcn6224
  • Qcn6274 Firmware
  • Qcn6274
  • Qcn9074 Firmware
  • Qcn9074
  • Qcs410 Firmware
  • Qcs410
  • Qcs610 Firmware
  • Qcs610
  • Qfw7114 Firmware
  • Qfw7114
  • Qfw7124 Firmware
  • Qfw7124
  • Qsm8250 Firmware
  • Qsm8250
  • Video Collaboration Vc1 Firmware
  • Video Collaboration Vc1
  • Video Collaboration Vc3 Firmware
  • Video Collaboration Vc3
  • Sa6145p Firmware
  • Sa6145p
  • Sa6150p Firmware
  • Sa6150p
  • Sa6155p Firmware
  • Sa6155p
  • Sa8145p Firmware
  • Sa8145p
  • Sa8150p Firmware
  • Sa8150p
  • Sa8155p Firmware
  • Sa8155p
  • Sa8195p Firmware
  • Sa8195p
  • Sa8295p Firmware
  • Sa8295p
  • Sa8530p Firmware
  • Sa8530p
  • Sa8540p Firmware
  • Sa8540p
  • Sa9000p Firmware
  • Sa9000p
  • Sd835 Firmware
  • Sd835
  • Sd865 5g Firmware
  • Sd865 5g
  • Sdm429w Firmware
  • Sdm429w
  • Sdx55 Firmware
  • Sdx55
  • Snapdragon 429 Mobile Firmware
  • Snapdragon 429 Mobile
  • Snapdragon 820 Automotive Firmware
  • Snapdragon 820 Automotive
  • Snapdragon 835 Mobile Pc Firmware
  • Snapdragon 835 Mobile Pc
  • Snapdragon 865 5g Mobile Firmware
  • Snapdragon 865 5g Mobile
  • Snapdragon 865\+ 5g Mobile Firmware
  • Snapdragon 865\+ 5g Mobile
  • Snapdragon 870 5g Mobile Firmware
  • Snapdragon 870 5g Mobile
  • Snapdragon Auto 5g Modem-rf Gen 2 Firmware
  • Snapdragon Auto 5g Modem-rf Gen 2
  • Snapdragon X55 5g Modem-rf Firmware
  • Snapdragon X55 5g Modem-rf
  • Snapdragon X72 5g Modem-rf Firmware
  • Snapdragon X72 5g Modem-rf
  • Snapdragon X75 5g Modem-rf Firmware
  • Snapdragon X75 5g Modem-rf
  • Snapdragon Xr2 5g Firmware
  • Snapdragon Xr2 5g
  • Snapdragon Auto 4g Modem Firmware
  • Snapdragon Auto 4g Modem
  • Sxr2130 Firmware
  • Sxr2130
  • Wcd9335 Firmware
  • Wcd9335
  • Wcd9340 Firmware
  • Wcd9340
  • Wcd9341 Firmware
  • Wcd9341
  • Wcd9370 Firmware
  • Wcd9370
  • Wcd9380 Firmware
  • Wcd9380
  • Wcn3620 Firmware
  • Wcn3620
  • Wcn3660b Firmware
  • Wcn3660b
  • Wcn3680b Firmware
  • Wcn3680b
  • Wcn3950 Firmware
  • Wcn3950
  • Wcn3980 Firmware
  • Wcn3980
  • Wcn3990 Firmware
  • Wcn3990
  • Wsa8810 Firmware
  • Wsa8810
  • Wsa8815 Firmware
  • Wsa8815
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -

Weaknesses

Common security weaknesses mapped to this vulnerability.

CWE-125
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
CWE-126
Buffer Over-read
The product reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer.

*CPE(s)

Affected systems and software identified for this CVE.

Type Vendor Product Version Update Edition Language Software Edition Target Software Target Hardware Other Information
o qualcomm ar8035_firmware - / / / / / / /
h qualcomm ar8035 - / / / / / / /
o qualcomm c-v2x_9150_firmware - / / / / / / /
h qualcomm c-v2x_9150 - / / / / / / /
o qualcomm csrb31024_firmware - / / / / / / /
h qualcomm csrb31024 - / / / / / / /
o qualcomm fastconnect_6800_firmware - / / / / / / /
h qualcomm fastconnect_6800 - / / / / / / /
o qualcomm fastconnect_6900_firmware - / / / / / / /
h qualcomm fastconnect_6900 - / / / / / / /
o qualcomm fastconnect_7800_firmware - / / / / / / /
h qualcomm fastconnect_7800 - / / / / / / /
o qualcomm msm8996au_firmware - / / / / / / /
h qualcomm msm8996au - / / / / / / /
o qualcomm qam8295p_firmware - / / / / / / /
h qualcomm qam8295p - / / / / / / /
o qualcomm qca6310_firmware - / / / / / / /
h qualcomm qca6310 - / / / / / / /
o qualcomm qca6320_firmware - / / / / / / /
h qualcomm qca6320 - / / / / / / /
o qualcomm qca6391_firmware - / / / / / / /
h qualcomm qca6391 - / / / / / / /
o qualcomm qca6426_firmware - / / / / / / /
h qualcomm qca6426 - / / / / / / /
o qualcomm qca6436_firmware - / / / / / / /
h qualcomm qca6436 - / / / / / / /
o qualcomm qca6564a_firmware - / / / / / / /
h qualcomm qca6564a - / / / / / / /
o qualcomm qca6564au_firmware - / / / / / / /
h qualcomm qca6564au - / / / / / / /
o qualcomm qca6574a_firmware - / / / / / / /
h qualcomm qca6574a - / / / / / / /
o qualcomm qca6574au_firmware - / / / / / / /
h qualcomm qca6574au - / / / / / / /
o qualcomm qca6584au_firmware - / / / / / / /
h qualcomm qca6584au - / / / / / / /
o qualcomm qca6595au_firmware - / / / / / / /
h qualcomm qca6595au - / / / / / / /
o qualcomm qca6696_firmware - / / / / / / /
h qualcomm qca6696 - / / / / / / /
o qualcomm qca6698aq_firmware - / / / / / / /
h qualcomm qca6698aq - / / / / / / /
o qualcomm qca8081_firmware - / / / / / / /
h qualcomm qca8081 - / / / / / / /
o qualcomm qca8337_firmware - / / / / / / /
h qualcomm qca8337 - / / / / / / /
o qualcomm qca9367_firmware - / / / / / / /
h qualcomm qca9367 - / / / / / / /
o qualcomm qca9377_firmware - / / / / / / /
h qualcomm qca9377 - / / / / / / /
o qualcomm qcc710_firmware - / / / / / / /
h qualcomm qcc710 - / / / / / / /
o qualcomm qcn6224_firmware - / / / / / / /
h qualcomm qcn6224 - / / / / / / /
o qualcomm qcn6274_firmware - / / / / / / /
h qualcomm qcn6274 - / / / / / / /
o qualcomm qcn9074_firmware - / / / / / / /
h qualcomm qcn9074 - / / / / / / /
o qualcomm qcs410_firmware - / / / / / / /
h qualcomm qcs410 - / / / / / / /
o qualcomm qcs610_firmware - / / / / / / /
h qualcomm qcs610 - / / / / / / /
o qualcomm qfw7114_firmware - / / / / / / /
h qualcomm qfw7114 - / / / / / / /
o qualcomm qfw7124_firmware - / / / / / / /
h qualcomm qfw7124 - / / / / / / /
o qualcomm qsm8250_firmware - / / / / / / /
h qualcomm qsm8250 - / / / / / / /
o qualcomm video_collaboration_vc1_firmware - / / / / / / /
h qualcomm video_collaboration_vc1 - / / / / / / /
o qualcomm video_collaboration_vc3_firmware - / / / / / / /
h qualcomm video_collaboration_vc3 - / / / / / / /
o qualcomm sa6145p_firmware - / / / / / / /
h qualcomm sa6145p - / / / / / / /
o qualcomm sa6150p_firmware - / / / / / / /
h qualcomm sa6150p - / / / / / / /
o qualcomm sa6155p_firmware - / / / / / / /
h qualcomm sa6155p - / / / / / / /
o qualcomm sa8145p_firmware - / / / / / / /
h qualcomm sa8145p - / / / / / / /
o qualcomm sa8150p_firmware - / / / / / / /
h qualcomm sa8150p - / / / / / / /
o qualcomm sa8155p_firmware - / / / / / / /
h qualcomm sa8155p - / / / / / / /
o qualcomm sa8195p_firmware - / / / / / / /
h qualcomm sa8195p - / / / / / / /
o qualcomm sa8295p_firmware - / / / / / / /
h qualcomm sa8295p - / / / / / / /
o qualcomm sa8530p_firmware - / / / / / / /
h qualcomm sa8530p - / / / / / / /
o qualcomm sa8540p_firmware - / / / / / / /
h qualcomm sa8540p - / / / / / / /
o qualcomm sa9000p_firmware - / / / / / / /
h qualcomm sa9000p - / / / / / / /
o qualcomm sd835_firmware - / / / / / / /
h qualcomm sd835 - / / / / / / /
o qualcomm sd865_5g_firmware - / / / / / / /
h qualcomm sd865_5g - / / / / / / /
o qualcomm sdm429w_firmware - / / / / / / /
h qualcomm sdm429w - / / / / / / /
o qualcomm sdx55_firmware - / / / / / / /
h qualcomm sdx55 - / / / / / / /
o qualcomm snapdragon_429_mobile_firmware - / / / / / / /
h qualcomm snapdragon_429_mobile - / / / / / / /
o qualcomm snapdragon_820_automotive_firmware - / / / / / / /
h qualcomm snapdragon_820_automotive - / / / / / / /
o qualcomm snapdragon_835_mobile_pc_firmware - / / / / / / /
h qualcomm snapdragon_835_mobile_pc - / / / / / / /
o qualcomm snapdragon_865_5g_mobile_firmware - / / / / / / /
h qualcomm snapdragon_865_5g_mobile - / / / / / / /
o qualcomm snapdragon_865\+_5g_mobile_firmware - / / / / / / /
h qualcomm snapdragon_865\+_5g_mobile - / / / / / / /
o qualcomm snapdragon_870_5g_mobile_firmware - / / / / / / /
h qualcomm snapdragon_870_5g_mobile - / / / / / / /
o qualcomm snapdragon_auto_5g_modem-rf_gen_2_firmware - / / / / / / /
h qualcomm snapdragon_auto_5g_modem-rf_gen_2 - / / / / / / /
o qualcomm snapdragon_x55_5g_modem-rf_firmware - / / / / / / /
h qualcomm snapdragon_x55_5g_modem-rf - / / / / / / /
o qualcomm snapdragon_x72_5g_modem-rf_firmware - / / / / / / /
h qualcomm snapdragon_x72_5g_modem-rf - / / / / / / /
o qualcomm snapdragon_x75_5g_modem-rf_firmware - / / / / / / /
h qualcomm snapdragon_x75_5g_modem-rf - / / / / / / /
o qualcomm snapdragon_xr2_5g_firmware - / / / / / / /
h qualcomm snapdragon_xr2_5g - / / / / / / /
o qualcomm snapdragon_auto_4g_modem_firmware - / / / / / / /
h qualcomm snapdragon_auto_4g_modem - / / / / / / /
o qualcomm sxr2130_firmware - / / / / / / /
h qualcomm sxr2130 - / / / / / / /
o qualcomm wcd9335_firmware - / / / / / / /
h qualcomm wcd9335 - / / / / / / /
o qualcomm wcd9340_firmware - / / / / / / /
h qualcomm wcd9340 - / / / / / / /
o qualcomm wcd9341_firmware - / / / / / / /
h qualcomm wcd9341 - / / / / / / /
o qualcomm wcd9370_firmware - / / / / / / /
h qualcomm wcd9370 - / / / / / / /
o qualcomm wcd9380_firmware - / / / / / / /
h qualcomm wcd9380 - / / / / / / /
o qualcomm wcn3620_firmware - / / / / / / /
h qualcomm wcn3620 - / / / / / / /
o qualcomm wcn3660b_firmware - / / / / / / /
h qualcomm wcn3660b - / / / / / / /
o qualcomm wcn3680b_firmware - / / / / / / /
h qualcomm wcn3680b - / / / / / / /
o qualcomm wcn3950_firmware - / / / / / / /
h qualcomm wcn3950 - / / / / / / /
o qualcomm wcn3980_firmware - / / / / / / /
h qualcomm wcn3980 - / / / / / / /
o qualcomm wcn3990_firmware - / / / / / / /
h qualcomm wcn3990 - / / / / / / /
o qualcomm wsa8810_firmware - / / / / / / /
h qualcomm wsa8810 - / / / / / / /
o qualcomm wsa8815_firmware - / / / / / / /
h qualcomm wsa8815 - / / / / / / /

CVSS Score

6.1 / 10

CVSS Data - 3.1

  • Attack Vector: LOCAL
  • Attack Complexity: LOW
  • Privileges Required: LOW
  • Scope: UNCHANGED
  • Confidentiality Impact: HIGH
  • Integrity Impact: NONE
  • Availability Impact: LOW
  • CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L

    View Vector String

Timeline

Published: Jan. 6, 2025, 11:15 a.m.
Last Modified: Jan. 10, 2025, 3:39 p.m.

Status : Analyzed

CVE has had analysis completed and all data associations made.

More info

Source

product-security@qualcomm.com

*Disclaimer: Some vulnerabilities do not have an associated CPE. To enhance the data, we use AI to infer CPEs based on CVE details. This is an automated process and might not always be accurate.