Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-38421

Nov. 7, 2024, 7:44 p.m.

CVSS Score

7.8 / 10

Products Impacted

Vendor Product Versions
qualcomm
  • wsa8845h_firmware
  • wsa8845h
  • wsa8845_firmware
  • wsa8845
  • wsa8840_firmware
  • wsa8840
  • wsa8835_firmware
  • wsa8835
  • wsa8832_firmware
  • wsa8832
  • wsa8830_firmware
  • wsa8830
  • wsa8815_firmware
  • wsa8815
  • wsa8810_firmware
  • wsa8810
  • wcn7881_firmware
  • wcn7881
  • wcn7880_firmware
  • wcn7880
  • wcn7861_firmware
  • wcn7861
  • wcn7860_firmware
  • wcn7860
  • wcn6755_firmware
  • wcn6755
  • wcn3988_firmware
  • wcn3988
  • wcn3980_firmware
  • wcn3980
  • wcn3950_firmware
  • wcn3950
  • wcd9395_firmware
  • wcd9395
  • wcd9390_firmware
  • wcd9390
  • wcd9385_firmware
  • wcd9385
  • wcd9378_firmware
  • wcd9378
  • wcd9375_firmware
  • wcd9375
  • wcd9370_firmware
  • wcd9370
  • sw5100p_firmware
  • sw5100p
  • sw5100_firmware
  • sw5100
  • srv1m_firmware
  • srv1m
  • srv1l_firmware
  • srv1l
  • srv1h_firmware
  • srv1h
  • snapdragon_w5\+_gen_1_wearable_platform_firmware
  • snapdragon_w5\+_gen_1_wearable_platform
  • snapdragon_8_gen_3_mobile_platform_firmware
  • snapdragon_8_gen_3_mobile_platform
  • snapdragon_695_5g_mobile_platform_firmware
  • snapdragon_695_5g_mobile_platform
  • snapdragon_480\+_5g_mobile_platform_firmware
  • snapdragon_480\+_5g_mobile_platform
  • snapdragon_480_5g_mobile_platform_firmware
  • snapdragon_480_5g_mobile_platform
  • snapdragon_4_gen_1_mobile_platform_firmware
  • snapdragon_4_gen_1_mobile_platform
  • sm8750p_firmware
  • sm8750p
  • sm8750_firmware
  • sm8750
  • sm8635_firmware
  • sm8635
  • sm4635_firmware
  • sm4635
  • sa9000p_firmware
  • sa9000p
  • sa8775p_firmware
  • sa8775p
  • sa8770p_firmware
  • sa8770p
  • sa8650p_firmware
  • sa8650p
  • sa8620p_firmware
  • sa8620p
  • sa8295p_firmware
  • sa8295p
  • sa8255p_firmware
  • sa8255p
  • sa8195p_firmware
  • sa8195p
  • sa8155p_firmware
  • sa8155p
  • sa7775p_firmware
  • sa7775p
  • sa7255p_firmware
  • sa7255p
  • sa6155p_firmware
  • sa6155p
  • video_collaboration_vc5_platform_firmware
  • video_collaboration_vc5_platform
  • video_collaboration_vc3_platform_firmware
  • video_collaboration_vc3_platform
  • video_collaboration_vc1_platform_firmware
  • video_collaboration_vc1_platform
  • qcs8250_firmware
  • qcs8250
  • qcs7230_firmware
  • qcs7230
  • qcs6490_firmware
  • qcs6490
  • qcs6125_firmware
  • qcs6125
  • qcm6125_firmware
  • qcm6125
  • qca6797aq_firmware
  • qca6797aq
  • qca6698aq_firmware
  • qca6698aq
  • qca6696_firmware
  • qca6696
  • qca6688aq_firmware
  • qca6688aq
  • qca6678aq_firmware
  • qca6678aq
  • qca6595au_firmware
  • qca6595au
  • qca6595_firmware
  • qca6595
  • qca6574au_firmware
  • qca6574au
  • qca6574a_firmware
  • qca6574a
  • qca6574_firmware
  • qca6574
  • qca6391_firmware
  • qca6391
  • qamsrv1m_firmware
  • qamsrv1m
  • qamsrv1h_firmware
  • qamsrv1h
  • qam8775p_firmware
  • qam8775p
  • qam8650p_firmware
  • qam8650p
  • qam8620p_firmware
  • qam8620p
  • qam8295p_firmware
  • qam8295p
  • qam8255p_firmware
  • qam8255p
  • fastconnect_7800_firmware
  • fastconnect_7800
  • fastconnect_6200_firmware
  • fastconnect_6200
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -
  • -

Description

Memory corruption while processing GPU commands.

Weaknesses

CWE-416
Use After Free

Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.

CWE ID: 416

Date

Published: Nov. 4, 2024, 10:15 a.m.

Last Modified: Nov. 7, 2024, 7:44 p.m.

Status : Analyzed

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

product-security@qualcomm.com

CPEs

Type Vendor Product Version Update Edition Language Software Edition Target Software Target Hardware Other Information
o qualcomm wsa8845h_firmware - / / / / / / /
h qualcomm wsa8845h - / / / / / / /
o qualcomm wsa8845_firmware - / / / / / / /
h qualcomm wsa8845 - / / / / / / /
o qualcomm wsa8840_firmware - / / / / / / /
h qualcomm wsa8840 - / / / / / / /
o qualcomm wsa8835_firmware - / / / / / / /
h qualcomm wsa8835 - / / / / / / /
o qualcomm wsa8832_firmware - / / / / / / /
h qualcomm wsa8832 - / / / / / / /
o qualcomm wsa8830_firmware - / / / / / / /
h qualcomm wsa8830 - / / / / / / /
o qualcomm wsa8815_firmware - / / / / / / /
h qualcomm wsa8815 - / / / / / / /
o qualcomm wsa8810_firmware - / / / / / / /
h qualcomm wsa8810 - / / / / / / /
o qualcomm wcn7881_firmware - / / / / / / /
h qualcomm wcn7881 - / / / / / / /
o qualcomm wcn7880_firmware - / / / / / / /
h qualcomm wcn7880 - / / / / / / /
o qualcomm wcn7861_firmware - / / / / / / /
h qualcomm wcn7861 - / / / / / / /
o qualcomm wcn7860_firmware - / / / / / / /
h qualcomm wcn7860 - / / / / / / /
o qualcomm wcn6755_firmware - / / / / / / /
h qualcomm wcn6755 - / / / / / / /
o qualcomm wcn3988_firmware - / / / / / / /
h qualcomm wcn3988 - / / / / / / /
o qualcomm wcn3980_firmware - / / / / / / /
h qualcomm wcn3980 - / / / / / / /
o qualcomm wcn3950_firmware - / / / / / / /
h qualcomm wcn3950 - / / / / / / /
o qualcomm wcd9395_firmware - / / / / / / /
h qualcomm wcd9395 - / / / / / / /
o qualcomm wcd9390_firmware - / / / / / / /
h qualcomm wcd9390 - / / / / / / /
o qualcomm wcd9385_firmware - / / / / / / /
h qualcomm wcd9385 - / / / / / / /
o qualcomm wcd9378_firmware - / / / / / / /
h qualcomm wcd9378 - / / / / / / /
o qualcomm wcd9375_firmware - / / / / / / /
h qualcomm wcd9375 - / / / / / / /
o qualcomm wcd9370_firmware - / / / / / / /
h qualcomm wcd9370 - / / / / / / /
o qualcomm sw5100p_firmware - / / / / / / /
h qualcomm sw5100p - / / / / / / /
o qualcomm sw5100_firmware - / / / / / / /
h qualcomm sw5100 - / / / / / / /
o qualcomm srv1m_firmware - / / / / / / /
h qualcomm srv1m - / / / / / / /
o qualcomm srv1l_firmware - / / / / / / /
h qualcomm srv1l - / / / / / / /
o qualcomm srv1h_firmware - / / / / / / /
h qualcomm srv1h - / / / / / / /
o qualcomm snapdragon_w5\+_gen_1_wearable_platform_firmware - / / / / / / /
h qualcomm snapdragon_w5\+_gen_1_wearable_platform - / / / / / / /
o qualcomm snapdragon_8_gen_3_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_8_gen_3_mobile_platform - / / / / / / /
o qualcomm snapdragon_695_5g_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_695_5g_mobile_platform - / / / / / / /
o qualcomm snapdragon_480\+_5g_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_480\+_5g_mobile_platform - / / / / / / /
o qualcomm snapdragon_480_5g_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_480_5g_mobile_platform - / / / / / / /
o qualcomm snapdragon_4_gen_1_mobile_platform_firmware - / / / / / / /
h qualcomm snapdragon_4_gen_1_mobile_platform - / / / / / / /
o qualcomm sm8750p_firmware - / / / / / / /
h qualcomm sm8750p - / / / / / / /
o qualcomm sm8750_firmware - / / / / / / /
h qualcomm sm8750 - / / / / / / /
o qualcomm sm8635_firmware - / / / / / / /
h qualcomm sm8635 - / / / / / / /
o qualcomm sm4635_firmware - / / / / / / /
h qualcomm sm4635 - / / / / / / /
o qualcomm sa9000p_firmware - / / / / / / /
h qualcomm sa9000p - / / / / / / /
o qualcomm sa8775p_firmware - / / / / / / /
h qualcomm sa8775p - / / / / / / /
o qualcomm sa8770p_firmware - / / / / / / /
h qualcomm sa8770p - / / / / / / /
o qualcomm sa8650p_firmware - / / / / / / /
h qualcomm sa8650p - / / / / / / /
o qualcomm sa8620p_firmware - / / / / / / /
h qualcomm sa8620p - / / / / / / /
o qualcomm sa8295p_firmware - / / / / / / /
h qualcomm sa8295p - / / / / / / /
o qualcomm sa8255p_firmware - / / / / / / /
h qualcomm sa8255p - / / / / / / /
o qualcomm sa8195p_firmware - / / / / / / /
h qualcomm sa8195p - / / / / / / /
o qualcomm sa8155p_firmware - / / / / / / /
h qualcomm sa8155p - / / / / / / /
o qualcomm sa7775p_firmware - / / / / / / /
h qualcomm sa7775p - / / / / / / /
o qualcomm sa7255p_firmware - / / / / / / /
h qualcomm sa7255p - / / / / / / /
o qualcomm sa6155p_firmware - / / / / / / /
h qualcomm sa6155p - / / / / / / /
o qualcomm video_collaboration_vc5_platform_firmware - / / / / / / /
h qualcomm video_collaboration_vc5_platform - / / / / / / /
o qualcomm video_collaboration_vc3_platform_firmware - / / / / / / /
h qualcomm video_collaboration_vc3_platform - / / / / / / /
o qualcomm video_collaboration_vc1_platform_firmware - / / / / / / /
h qualcomm video_collaboration_vc1_platform - / / / / / / /
o qualcomm qcs8250_firmware - / / / / / / /
h qualcomm qcs8250 - / / / / / / /
o qualcomm qcs7230_firmware - / / / / / / /
h qualcomm qcs7230 - / / / / / / /
o qualcomm qcs6490_firmware - / / / / / / /
h qualcomm qcs6490 - / / / / / / /
o qualcomm qcs6125_firmware - / / / / / / /
h qualcomm qcs6125 - / / / / / / /
o qualcomm qcm6125_firmware - / / / / / / /
h qualcomm qcm6125 - / / / / / / /
o qualcomm qca6797aq_firmware - / / / / / / /
h qualcomm qca6797aq - / / / / / / /
o qualcomm qca6698aq_firmware - / / / / / / /
h qualcomm qca6698aq - / / / / / / /
o qualcomm qca6696_firmware - / / / / / / /
h qualcomm qca6696 - / / / / / / /
o qualcomm qca6688aq_firmware - / / / / / / /
h qualcomm qca6688aq - / / / / / / /
o qualcomm qca6678aq_firmware - / / / / / / /
h qualcomm qca6678aq - / / / / / / /
o qualcomm qca6595au_firmware - / / / / / / /
h qualcomm qca6595au - / / / / / / /
o qualcomm qca6595_firmware - / / / / / / /
h qualcomm qca6595 - / / / / / / /
o qualcomm qca6574au_firmware - / / / / / / /
h qualcomm qca6574au - / / / / / / /
o qualcomm qca6574a_firmware - / / / / / / /
h qualcomm qca6574a - / / / / / / /
o qualcomm qca6574_firmware - / / / / / / /
h qualcomm qca6574 - / / / / / / /
o qualcomm qca6391_firmware - / / / / / / /
h qualcomm qca6391 - / / / / / / /
o qualcomm qamsrv1m_firmware - / / / / / / /
h qualcomm qamsrv1m - / / / / / / /
o qualcomm qamsrv1h_firmware - / / / / / / /
h qualcomm qamsrv1h - / / / / / / /
o qualcomm qam8775p_firmware - / / / / / / /
h qualcomm qam8775p - / / / / / / /
o qualcomm qam8650p_firmware - / / / / / / /
h qualcomm qam8650p - / / / / / / /
o qualcomm qam8620p_firmware - / / / / / / /
h qualcomm qam8620p - / / / / / / /
o qualcomm qam8295p_firmware - / / / / / / /
h qualcomm qam8295p - / / / / / / /
o qualcomm qam8255p_firmware - / / / / / / /
h qualcomm qam8255p - / / / / / / /
o qualcomm fastconnect_7800_firmware - / / / / / / /
h qualcomm fastconnect_7800 - / / / / / / /
o qualcomm fastconnect_6200_firmware - / / / / / / /
h qualcomm fastconnect_6200 - / / / / / / /

CVSS Data

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

Base Score
7.8
Exploitability Score
1.8
Impact Score
5.9
Base Severity
HIGH
CVSS Vector String

The CVSS vector string provides an in-depth view of the vulnerability metrics.

View Vector String

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

References

https://docs.qualcomm.com/ product-security@qualcomm.com