CVE-2024-21474

Memory corruption when size of buffer from previous call is used without validation or re-initialization.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.4 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
8.4 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 8%
VendorProductVersion
qualcommar8035_firmware
-
qualcommfastconnect_6900_firmware
-
qualcommfastconnect_7800_firmware
-
qualcommqam8295p_firmware
-
qualcommqca6574au_firmware
-
qualcommqca6595_firmware
-
qualcommqca6696_firmware
-
qualcommqca6698aq_firmware
-
qualcommqca8081_firmware
-
qualcommqca8337_firmware
-
qualcommsa8295p_firmware
-
qualcommsa8530p_firmware
-
qualcommsa8540p_firmware
-
qualcommsa9000p_firmware
-
qualcommsc8380xp_firmware
-
qualcommsc8280xp-abbb_firmware
-
qualcommsnapdragon_x65_5g_modem-rf_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9385_firmware
-
qualcommwsa8830_firmware
-
qualcommwsa8835_firmware
-
qualcommwsa8840_firmware
-
qualcommwsa8845_firmware
-
qualcommwsa8845h_firmware
-
𝑥
= Vulnerable software versions