CVE-2024-38411

Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.6 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
qualcommCNA
6.6 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 3%
VendorProductVersion
qualcommfastconnect_6900_firmware
-
qualcommfastconnect_7800_firmware
-
qualcommqcm8550_firmware
-
qualcommqcs6490_firmware
-
qualcommqcs8550_firmware
-
qualcommvideo_collaboration_vc3_firmware
-
qualcommsg8275p_firmware
-
qualcommsm8550p_firmware
-
qualcommsnapdragon_8_gen_2_mobile_firmware
-
qualcommsnapdragon_8_gen_3_mobile_firmware
-
qualcommsnapdragon_8\+_gen_2_mobile_firmware
-
qualcommwcd9380_firmware
-
qualcommwcd9385_firmware
-
qualcommwcd9390_firmware
-
qualcommwcd9395_firmware
-
qualcommwsa8840_firmware
-
qualcommwsa8845_firmware
-
qualcommwsa8845h_firmware
-
𝑥
= Vulnerable software versions