Vulnerability Details CVE-2024-23377
Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already sent to the EVA driver.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 3.8%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2024-23377
-
cpe:2.3:h:qualcomm:fastconnect_6900:-
-
cpe:2.3:h:qualcomm:fastconnect_7800:-
-
cpe:2.3:h:qualcomm:qca6391:-
-
cpe:2.3:h:qualcomm:qcm8550:-
-
cpe:2.3:h:qualcomm:qcs7230:-
-
cpe:2.3:h:qualcomm:qcs8250:-
-
cpe:2.3:h:qualcomm:qcs8550:-
-
cpe:2.3:h:qualcomm:sd_8_gen1_5g:-
-
cpe:2.3:h:qualcomm:sg8275:-
-
cpe:2.3:h:qualcomm:sg8275p:-
-
cpe:2.3:h:qualcomm:sm7525:-
-
cpe:2.3:h:qualcomm:sm7550:-
-
cpe:2.3:h:qualcomm:sm8550p:-
-
cpe:2.3:h:qualcomm:snapdragon_8+_gen_2_mobile_platform:-
-
cpe:2.3:h:qualcomm:snapdragon_8_gen_2_mobile_platform:-
-
cpe:2.3:h:qualcomm:snapdragon_ar2_gen_1_platform:-
-
cpe:2.3:h:qualcomm:ssg2115p:-
-
cpe:2.3:h:qualcomm:ssg2125p:-
-
cpe:2.3:h:qualcomm:sxr1230p:-
-
cpe:2.3:h:qualcomm:sxr2230p:-
-
cpe:2.3:h:qualcomm:sxr2250p:-
-
cpe:2.3:h:qualcomm:video_collaboration_vc5_platform:-
-
cpe:2.3:h:qualcomm:wcd9370:-
-
cpe:2.3:h:qualcomm:wcd9371:-
-
cpe:2.3:h:qualcomm:wcd9375:-
-
cpe:2.3:h:qualcomm:wcd9378:-
-
cpe:2.3:h:qualcomm:wcd9380:-
-
cpe:2.3:h:qualcomm:wcd9385:-
-
cpe:2.3:h:qualcomm:wcd9390:-
-
cpe:2.3:h:qualcomm:wcd9395:-
-
cpe:2.3:h:qualcomm:wcn6650:-
-
cpe:2.3:h:qualcomm:wcn6755:-
-
cpe:2.3:h:qualcomm:wcn7880:-
-
cpe:2.3:h:qualcomm:wsa8830:-
-
cpe:2.3:h:qualcomm:wsa8832:-
-
cpe:2.3:h:qualcomm:wsa8835:-
-
cpe:2.3:h:qualcomm:wsa8840:-
-
cpe:2.3:h:qualcomm:wsa8845:-
-
cpe:2.3:h:qualcomm:wsa8845h:-
-
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-
-
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-
-
cpe:2.3:o:qualcomm:qca6391_firmware:-
-
cpe:2.3:o:qualcomm:qcm8550_firmware:-
-
cpe:2.3:o:qualcomm:qcs7230_firmware:-
-
cpe:2.3:o:qualcomm:qcs8250_firmware:-
-
cpe:2.3:o:qualcomm:qcs8550_firmware:-
-
cpe:2.3:o:qualcomm:sd_8_gen1_5g_firmware:-
-
cpe:2.3:o:qualcomm:sg8275_firmware:-
-
cpe:2.3:o:qualcomm:sg8275p_firmware:-
-
cpe:2.3:o:qualcomm:sm7525_firmware:-
-
cpe:2.3:o:qualcomm:sm7550_firmware:-
-
cpe:2.3:o:qualcomm:sm8550p_firmware:-
-
cpe:2.3:o:qualcomm:snapdragon_8+_gen_2_mobile_platform_firmware:-
-
cpe:2.3:o:qualcomm:snapdragon_8_gen_2_mobile_platform_firmware:-
-
cpe:2.3:o:qualcomm:snapdragon_ar2_gen_1_platform_firmware:-
-
cpe:2.3:o:qualcomm:ssg2115p_firmware:-
-
cpe:2.3:o:qualcomm:ssg2125p_firmware:-
-
cpe:2.3:o:qualcomm:sxr1230p_firmware:-
-
cpe:2.3:o:qualcomm:sxr2230p_firmware:-
-
cpe:2.3:o:qualcomm:sxr2250p_firmware:-
-
cpe:2.3:o:qualcomm:video_collaboration_vc5_platform_firmware:-
-
cpe:2.3:o:qualcomm:wcd9370_firmware:-
-
cpe:2.3:o:qualcomm:wcd9371_firmware:-
-
cpe:2.3:o:qualcomm:wcd9375_firmware:-
-
cpe:2.3:o:qualcomm:wcd9378_firmware:-
-
cpe:2.3:o:qualcomm:wcd9380_firmware:-
-
cpe:2.3:o:qualcomm:wcd9385_firmware:-
-
cpe:2.3:o:qualcomm:wcd9390_firmware:-
-
cpe:2.3:o:qualcomm:wcd9395_firmware:-
-
cpe:2.3:o:qualcomm:wcn6650_firmware:-
-
cpe:2.3:o:qualcomm:wcn6755_firmware:-
-
cpe:2.3:o:qualcomm:wcn7880_firmware:-
-
cpe:2.3:o:qualcomm:wsa8830_firmware:-
-
cpe:2.3:o:qualcomm:wsa8832_firmware:-
-
cpe:2.3:o:qualcomm:wsa8835_firmware:-
-
cpe:2.3:o:qualcomm:wsa8840_firmware:-
-
cpe:2.3:o:qualcomm:wsa8845_firmware:-
-
cpe:2.3:o:qualcomm:wsa8845h_firmware:-