CVE Feed

    Dashboard / CVE / CVE-2024-23366

    CVE-2024-23366

    Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.

    Published:Jan 6, 2025
    Last Modified:Jan 10, 2025
    EPS:Jan 6, 2025
    EPSS Score:0.00023
    CVSS Score:6.6

    Affected Products

    Vendor
    Qualcomm
    Product
    Qam8255p
    Vendor
    Qualcomm
    Product
    Qam8255p Firmware
    Vendor
    Qualcomm
    Product
    Qam8295p
    Vendor
    Qualcomm
    Product
    Qam8295p Firmware
    Vendor
    Qualcomm
    Product
    Qam8650p
    Vendor
    Qualcomm
    Product
    Qam8650p Firmware
    Vendor
    Qualcomm
    Product
    Qam8775p
    Vendor
    Qualcomm
    Product
    Qam8775p Firmware
    Vendor
    Qualcomm
    Product
    Qamsrv1h
    Vendor
    Qualcomm
    Product
    Qamsrv1h Firmware
    Vendor
    Qualcomm
    Product
    Qca6595
    Vendor
    Qualcomm
    Product
    Qca6595 Firmware
    Vendor
    Qualcomm
    Product
    Qca6595au
    Vendor
    Qualcomm
    Product
    Qca6595au Firmware
    Vendor
    Qualcomm
    Product
    Qca6696
    Vendor
    Qualcomm
    Product
    Qca6696 Firmware
    Vendor
    Qualcomm
    Product
    Qca6698aq
    Vendor
    Qualcomm
    Product
    Qca6698aq Firmware
    Vendor
    Qualcomm
    Product
    Sa8255p
    Vendor
    Qualcomm
    Product
    Sa8255p Firmware
    Vendor
    Qualcomm
    Product
    Sa8295p
    Vendor
    Qualcomm
    Product
    Sa8295p Firmware
    Vendor
    Qualcomm
    Product
    Sa8540p
    Vendor
    Qualcomm
    Product
    Sa8540p Firmware
    Vendor
    Qualcomm
    Product
    Sa8650p
    Vendor
    Qualcomm
    Product
    Sa8650p Firmware
    Vendor
    Qualcomm
    Product
    Sa8770p
    Vendor
    Qualcomm
    Product
    Sa8770p Firmware
    Vendor
    Qualcomm
    Product
    Sa8775p
    Vendor
    Qualcomm
    Product
    Sa8775p Firmware
    Vendor
    Qualcomm
    Product
    Sa9000p
    Vendor
    Qualcomm
    Product
    Sa9000p Firmware
    Vendor
    Qualcomm
    Product
    Srv1h
    Vendor
    Qualcomm
    Product
    Srv1h Firmware

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High