CVE-2024-21455

Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 2%
VendorProductVersion
qualcommqualcomm_video_collaboration_vc1_platform_firmware
-
qualcommwsa8815_firmware
-
qualcommwsa8810_firmware
-
qualcommwcn3980_firmware
-
qualcommwcn3950_firmware
-
qualcommwcd9375_firmware
-
qualcommwcd9370_firmware
-
qualcommsnapdragon_auto_5g_modem-rf_gen_2_firmware
-
qualcommsnapdragon_685_4g_mobile_platform_\(sm6225-ad\)_firmware
-
qualcommsnapdragon_680_4g_mobile_platform_firmware
-
qualcommsg4150p_firmware
-
qualcommsa8295p_firmware
-
qualcommqcs6125_firmware
-
qualcommqcm6125_firmware
-
qualcommqca6698aq_firmware
-
qualcommqca6696_firmware
-
qualcommqca6688aq_firmware
-
qualcommqca6595_firmware
-
qualcommqca6584au_firmware
-
qualcommqam8295p_firmware
-
𝑥
= Vulnerable software versions