CVE-2024-23377

EUVD-2024-20881
Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already sent to the EVA driver.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 34%
Affected Products (NVD)
VendorProductVersion
qualcommwsa8845h_firmware
-
qualcommwsa8845_firmware
-
qualcommwsa8840_firmware
-
qualcommwsa8835_firmware
-
qualcommwsa8832_firmware
-
qualcommwsa8830_firmware
-
qualcommwcn7880_firmware
-
qualcommwcn6755_firmware
-
qualcommwcn6650_firmware
-
qualcommwcd9395_firmware
-
qualcommwcd9390_firmware
-
qualcommwcd9385_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9378_firmware
-
qualcommwcd9375_firmware
-
qualcommwcd9371_firmware
-
qualcommwcd9370_firmware
-
qualcommsxr2250p_firmware
-
qualcommsxr2230p_firmware
-
qualcommsxr1230p_firmware
-
qualcommssg2125p_firmware
-
qualcommssg2115p_firmware
-
qualcommsnapdragon_ar2_gen_1_platform_firmware
-
qualcommsnapdragon_8\+_gen_2_mobile_platform_firmware
-
qualcommsnapdragon_8_gen_2_mobile_platform_firmware
-
qualcommsm8550p_firmware
-
qualcommsm7550_firmware
-
qualcommsm7525_firmware
-
qualcommsg8275p_firmware
-
qualcommsg8275_firmware
-
qualcommsd_8_gen1_5g_firmware
-
qualcommvideo_collaboration_vc5_platform_firmware
-
qualcommqcs8550_firmware
-
qualcommqcs8250_firmware
-
qualcommqcs7230_firmware
-
qualcommqcm8550_firmware
-
qualcommqca6391_firmware
-
qualcommfastconnect_7800_firmware
-
qualcommfastconnect_6900_firmware
-
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
qualcommfastconnect_6900_firmware
𝑥
≤ *
ADP
qualcommfastconnect_7800_firmware
𝑥
≤ *
ADP
qualcommqca6391_firmware
𝑥
≤ *
ADP
qualcommqcm8550_firmware
𝑥
≤ *
ADP
qualcommqcs7230_firmware
𝑥
≤ *
ADP
qualcommqcs8250_firmware
𝑥
≤ *
ADP
qualcommqcs8550_firmware
𝑥
≤ *
ADP
qualcommqualcomm_video_collaboration_vc5_platform_firmware
𝑥
≤ *
ADP
qualcommsd_8_gen1_5g_firmware
𝑥
≤ *
ADP
qualcommsg8275_firmware
𝑥
≤ *
ADP
qualcommsg8275p_firmware
𝑥
≤ *
ADP
qualcommsm7525_firmware
𝑥
≤ *
ADP
qualcommsm7550_firmware
𝑥
≤ *
ADP
qualcommsm8550p_firmware
𝑥
≤ *
ADP
qualcommsnapdragon_8_gen_2_mobile_platform_firmware
𝑥
≤ *
ADP
qualcommsnapdragon_ar2_gen_1_platform_firmware
𝑥
≤ *
ADP
qualcommssg2115p_firmware
𝑥
≤ *
ADP
qualcommssg2125p_firmware
𝑥
≤ *
ADP
qualcommsxr1230p_firmware
𝑥
≤ *
ADP
qualcommsxr2230p_firmware
𝑥
≤ *
ADP
qualcommsxr2250p_firmware
𝑥
≤ *
ADP
qualcommwcd9370_firmware
𝑥
≤ *
ADP
qualcommwcd9371_firmware
𝑥
≤ *
ADP
qualcommwcd9375_firmware
𝑥
≤ *
ADP
qualcommwcd9378_firmware
𝑥
≤ *
ADP
qualcommwcd9380_firmware
𝑥
≤ *
ADP
qualcommwcd9385_firmware
𝑥
≤ *
ADP
qualcommwcd9390_firmware
𝑥
≤ *
ADP
qualcommwcd9395_firmware
𝑥
≤ *
ADP
qualcommwcn6650_firmware
𝑥
≤ *
ADP
qualcommwcn6755_firmware
𝑥
≤ *
ADP
qualcommwcn7880_firmware
𝑥
≤ *
ADP
qualcommwsa8830_firmware
𝑥
≤ *
ADP
qualcommwsa8832_firmware
𝑥
≤ *
ADP
qualcommwsa8835_firmware
𝑥
≤ *
ADP
qualcommwsa8840_firmware
𝑥
≤ *
ADP
qualcommwsa8845_firmware
𝑥
≤ *
ADP
qualcommwsa8845h_firmware
𝑥
≤ *
ADP