CVE-2024-23366

EUVD-2024-20870
Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.6 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
qualcommCNA
6.6 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 22%
Affected Products (NVD)
VendorProductVersion
qualcommqam8255p_firmware
-
qualcommqam8295p_firmware
-
qualcommqam8650p_firmware
-
qualcommqam8775p_firmware
-
qualcommqamsrv1h_firmware
-
qualcommqca6595_firmware
-
qualcommqca6595au_firmware
-
qualcommqca6696_firmware
-
qualcommqca6698aq_firmware
-
qualcommsa8255p_firmware
-
qualcommsa8295p_firmware
-
qualcommsa8540p_firmware
-
qualcommsa8650p_firmware
-
qualcommsa8770p_firmware
-
qualcommsa8775p_firmware
-
qualcommsa9000p_firmware
-
qualcommsrv1h_firmware
-
𝑥
= Vulnerable software versions