CVE Feed

    Dashboard / CVE / CVE-2024-23377

    CVE-2024-23377

    Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already sent to the EVA driver.

    Published:Nov 4, 2024
    Last Modified:Nov 8, 2024
    EPS:Nov 4, 2024
    EPSS Score:0.00029
    CVSS Score:6.7

    Affected Products

    Vendor
    Qualcomm
    Product
    Fastconnect 6900
    Vendor
    Qualcomm
    Product
    Fastconnect 6900 Firmware
    Vendor
    Qualcomm
    Product
    Fastconnect 7800
    Vendor
    Qualcomm
    Product
    Fastconnect 7800 Firmware
    Vendor
    Qualcomm
    Product
    Qca6391
    Vendor
    Qualcomm
    Product
    Qca6391 Firmware
    Vendor
    Qualcomm
    Product
    Qcm8550
    Vendor
    Qualcomm
    Product
    Qcm8550 Firmware
    Vendor
    Qualcomm
    Product
    Qcs7230
    Vendor
    Qualcomm
    Product
    Qcs7230 Firmware
    Vendor
    Qualcomm
    Product
    Qcs8250
    Vendor
    Qualcomm
    Product
    Qcs8250 Firmware
    Vendor
    Qualcomm
    Product
    Qcs8550
    Vendor
    Qualcomm
    Product
    Qcs8550 Firmware
    Vendor
    Qualcomm
    Product
    Qualcomm Video Collaboration Vc5 Platform Firmware
    Vendor
    Qualcomm
    Product
    Sd 8 Gen1 5g
    Vendor
    Qualcomm
    Product
    Sd 8 Gen1 5g Firmware
    Vendor
    Qualcomm
    Product
    Sg8275
    Vendor
    Qualcomm
    Product
    Sg8275 Firmware
    Vendor
    Qualcomm
    Product
    Sg8275p
    Vendor
    Qualcomm
    Product
    Sg8275p Firmware
    Vendor
    Qualcomm
    Product
    Sm7525
    Vendor
    Qualcomm
    Product
    Sm7525 Firmware
    Vendor
    Qualcomm
    Product
    Sm7550
    Vendor
    Qualcomm
    Product
    Sm7550 Firmware
    Vendor
    Qualcomm
    Product
    Sm8550p
    Vendor
    Qualcomm
    Product
    Sm8550p Firmware
    Vendor
    Qualcomm
    Product
    Snapdragon 8\+ Gen 2 Mobile Platform
    Vendor
    Qualcomm
    Product
    Snapdragon 8\+ Gen 2 Mobile Platform Firmware
    Vendor
    Qualcomm
    Product
    Snapdragon 8 Gen 2 Mobile Platform
    Vendor
    Qualcomm
    Product
    Snapdragon 8 Gen 2 Mobile Platform Firmware
    Vendor
    Qualcomm
    Product
    Snapdragon Ar2 Gen 1 Platform
    Vendor
    Qualcomm
    Product
    Snapdragon Ar2 Gen 1 Platform Firmware
    Vendor
    Qualcomm
    Product
    Ssg2115p
    Vendor
    Qualcomm
    Product
    Ssg2115p Firmware
    Vendor
    Qualcomm
    Product
    Ssg2125p
    Vendor
    Qualcomm
    Product
    Ssg2125p Firmware
    Vendor
    Qualcomm
    Product
    Sxr1230p
    Vendor
    Qualcomm
    Product
    Sxr1230p Firmware
    Vendor
    Qualcomm
    Product
    Sxr2230p
    Vendor
    Qualcomm
    Product
    Sxr2230p Firmware
    Vendor
    Qualcomm
    Product
    Sxr2250p
    Vendor
    Qualcomm
    Product
    Sxr2250p Firmware
    Vendor
    Qualcomm
    Product
    Video Collaboration Vc5 Platform
    Vendor
    Qualcomm
    Product
    Video Collaboration Vc5 Platform Firmware
    Vendor
    Qualcomm
    Product
    Wcd9370
    Vendor
    Qualcomm
    Product
    Wcd9370 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9371
    Vendor
    Qualcomm
    Product
    Wcd9371 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9375
    Vendor
    Qualcomm
    Product
    Wcd9375 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9378
    Vendor
    Qualcomm
    Product
    Wcd9378 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9380
    Vendor
    Qualcomm
    Product
    Wcd9380 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9385
    Vendor
    Qualcomm
    Product
    Wcd9385 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9390
    Vendor
    Qualcomm
    Product
    Wcd9390 Firmware
    Vendor
    Qualcomm
    Product
    Wcd9395
    Vendor
    Qualcomm
    Product
    Wcd9395 Firmware
    Vendor
    Qualcomm
    Product
    Wcn6650
    Vendor
    Qualcomm
    Product
    Wcn6650 Firmware
    Vendor
    Qualcomm
    Product
    Wcn6755
    Vendor
    Qualcomm
    Product
    Wcn6755 Firmware
    Vendor
    Qualcomm
    Product
    Wcn7880
    Vendor
    Qualcomm
    Product
    Wcn7880 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8830
    Vendor
    Qualcomm
    Product
    Wsa8830 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8832
    Vendor
    Qualcomm
    Product
    Wsa8832 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8835
    Vendor
    Qualcomm
    Product
    Wsa8835 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8840
    Vendor
    Qualcomm
    Product
    Wsa8840 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8845
    Vendor
    Qualcomm
    Product
    Wsa8845 Firmware
    Vendor
    Qualcomm
    Product
    Wsa8845h
    Vendor
    Qualcomm
    Product
    Wsa8845h Firmware

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High