CVE Feed

    Dashboard / CVE / CVE-2024-21455

    CVE-2024-21455

    Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver.

    Published:Oct 7, 2024
    Last Modified:Aug 11, 2025
    EPS:Oct 7, 2024
    EPSS Score:0.00022
    CVSS Score:7.8

    Affected Products

    Vendor
    Qualcomm
    Product
    Qam8295p
    Vendor
    Qualcomm
    Product
    Qam8295p Firmware
    Vendor
    Qualcomm
    Product
    Qca6584au
    Vendor
    Qualcomm
    Product
    Qca6584au Firmware
    Vendor
    Qualcomm
    Product
    Qca6595
    Vendor
    Qualcomm
    Product
    Qca6595 Firmware
    Vendor
    Qualcomm
    Product
    Qca6688aq
    Vendor
    Qualcomm
    Product
    Qca6688aq Firmware
    Vendor
    Qualcomm
    Product
    Qca6696
    Vendor
    Qualcomm
    Product
    Qca6696 Firmware
    Vendor
    Qualcomm
    Product
    Qca6698aq
    Vendor
    Qualcomm
    Product
    Qca6698aq Firmware
    Vendor
    Qualcomm
    Product
    Qcm6125
    Vendor
    Qualcomm
    Product
    Qcm6125 Firmware
    Vendor
    Qualcomm
    Product
    Qcs6125
    Vendor
    Qualcomm
    Product
    Qcs6125 Firmware
    Vendor
    Qualcomm
    Product
    Qualcomm Video Collaboration Vc1 Platform Firmware
    Vendor
    Qualcomm
    Product
    Sa8295p
    Vendor
    Qualcomm
    Product
    Sa8295p Firmware
    Vendor
    Qualcomm
    Product
    Sg4150p
    Vendor
    Qualcomm
    Product
    Sg4150p Firmware
    Vendor
    Qualcomm
    Product
    Snapdragon 680 4g Mobile Platform
    Vendor
    Qualcomm
    Product
    Snapdragon 680 4g Mobile Platform Firmware
    Vendor
    Qualcomm
    Product
    Snapdragon 685 4g Mobile Platform \(sm6225-ad\)
    Vendor
    Qualcomm
    Product
    Snapdragon 685 4g Mobile Platform \(sm6225-ad\) Firmware
    Vendor
    Qualcomm
    Product
    Snapdragon Auto 5g Modem-rf Gen 2
    Vendor
    Qualcomm
    Product
    Snapdragon Auto 5g Modem-rf Gen 2 Firmware
    Vendor
    Qualcomm
    Product
    Video Collaboration Vc1 Platform
    Vendor
    Qualcomm
    Product
    Video Collaboration Vc1 Platform Firmware
    Vendor
    Qualcomm
    Product
    Wcd9370
    Vendor
    Qualcomm
    Product
    Wcd9370 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9375
    Vendor
    Qualcomm
    Product
    Wcd9375 Firmware
    Vendor
    Qualcomm
    Product
    Wcn3950
    Vendor
    Qualcomm
    Product
    Wcn3950 Firmware
    Vendor
    Qualcomm
    Product
    Wcn3980
    Vendor
    Qualcomm
    Product
    Wcn3980 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8810
    Vendor
    Qualcomm
    Product
    Wsa8810 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8815
    Vendor
    Qualcomm
    Product
    Wsa8815 Firmware

    Exploits

    No exploit reference

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High