CVE-2024-21455

EUVD-2024-19164
Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 41%
Affected Products (NVD)
VendorProductVersion
qualcommvideo_collaboration_vc1_platform_firmware
-
qualcommwsa8815_firmware
-
qualcommwsa8810_firmware
-
qualcommwcn3980_firmware
-
qualcommwcn3950_firmware
-
qualcommwcd9375_firmware
-
qualcommwcd9370_firmware
-
qualcommsnapdragon_auto_5g_modem-rf_gen_2_firmware
-
qualcommsnapdragon_685_4g_mobile_platform_\(sm6225-ad\)_firmware
-
qualcommsnapdragon_680_4g_mobile_platform_firmware
-
qualcommsg4150p_firmware
-
qualcommsa8295p_firmware
-
qualcommqcs6125_firmware
-
qualcommqcm6125_firmware
-
qualcommqca6698aq_firmware
-
qualcommqca6696_firmware
-
qualcommqca6688aq_firmware
-
qualcommqca6595_firmware
-
qualcommqca6584au_firmware
-
qualcommqam8295p_firmware
-
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
qualcommqam8295p_firmware
𝑥
≤ *
ADP
qualcommqca6584au_firmware
𝑥
≤ *
ADP
qualcommqca6595_firmware
𝑥
≤ *
ADP
qualcommqca6688aq_firmware
𝑥
≤ *
ADP
qualcommqca6696_firmware
𝑥
≤ *
ADP
qualcommqca6698aq_firmware
𝑥
≤ *
ADP
qualcommqcm6125_firmware
𝑥
≤ *
ADP
qualcommqcs6125_firmware
𝑥
≤ *
ADP
qualcommqualcomm_video_collaboration_vc1_platform_firmware
𝑥
≤ *
ADP
qualcommsa8295p_firmware
𝑥
≤ *
ADP
qualcommsg4150p_firmware
𝑥
≤ *
ADP
qualcommsnapdragon_680_4g_mobile_platform_firmware
𝑥
≤ *
ADP
qualcommsnapdragon_auto_5g_modem-rf_gen_2_firmware
𝑥
≤ *
ADP
qualcommwcd9370_firmware
𝑥
≤ *
ADP
qualcommwcd9375_firmware
𝑥
≤ *
ADP
qualcommwcn3950_firmware
𝑥
≤ *
ADP
qualcommwcn3980_firmware
𝑥
≤ *
ADP
qualcommwsa8810_firmware
𝑥
≤ *
ADP
qualcommwsa8815_firmware
𝑥
≤ *
ADP