CVE-2024-38399

Published Oct 7, 2024

Last updated a year ago

Overview

Description
Memory corruption while processing user packets to generate page faults.
Source
product-security@qualcomm.com
NVD status
Analyzed
Products
wsa8835_firmware, wsa8830_firmware, wsa8810_firmware, wcn3950_firmware, wcd9380_firmware, wcd9375_firmware, wcd9370_firmware, srv1m_firmware, srv1h_firmware, snapdragon_8_gen_1_mobile_platform_firmware, snapdragon_685_4g_mobile_platform_\(sm6225-ad\)_firmware, snapdragon_680_4g_mobile_platform_firmware, sg4150p_firmware, sa9000p_firmware, sa8775p_firmware, sa8770p_firmware, sa8650p_firmware, sa8620p_firmware, sa8295p_firmware, sa8255p_firmware, sa8195p_firmware, sa8155p_firmware, sa7775p_firmware, sa7255p_firmware, sa6155p_firmware, qca6797aq_firmware, qca6698aq_firmware, qca6696_firmware, qca6688aq_firmware, qca6595au_firmware, qca6595_firmware, qca6574au_firmware, qamsrv1m_firmware, qamsrv1h_firmware, qam8775p_firmware, qam8650p_firmware, qam8295p_firmware, qam8255p_firmware, fastconnect_7800_firmware, fastconnect_6900_firmware

Risk scores

CVSS 3.1

Type
Primary
Base score
7.8
Impact score
5.9
Exploitability score
1.8
Vector string
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

nvd@nist.gov
CWE-416
product-security@qualcomm.com
CWE-416

Social media

Hype score
Not currently trending

Configurations