CVE-2024-23350

Permanent DOS when DL NAS transport receives multiple payloads such that one payload contains SOR container whose integrity check has failed, and the other is LPP where UE needs to send status message to network.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:wcd9395_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9395:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:wcd9390_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9390:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:wcd9340_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9340:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_x75_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x75_5g_modem-rf_system:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_x72_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x72_5g_modem-rf_system:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_x35_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x35_5g_modem-rf_system:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_auto_5g_modem-rf_gen_2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_auto_5g_modem-rf_gen_2:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_8_gen_3_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_3_mobile_platform:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:qualcomm:qfw7124_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfw7124:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:qualcomm:qfw7114_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfw7114:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:qualcomm:qep8111_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qep8111:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:qualcomm:qcn6274_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn6274:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:qualcomm:qcn6224_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn6224:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:qualcomm:qcc710_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcc710:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca8337:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca8081:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6698aq:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ar8035:-:*:*:*:*:*:*:*

History

26 Nov 2024, 15:48

Type Values Removed Values Added
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html - Vendor Advisory
First Time Qualcomm wsa8845
Qualcomm qca8337
Qualcomm snapdragon 8 Gen 3 Mobile Platform Firmware
Qualcomm snapdragon 8 Gen 3 Mobile Platform
Qualcomm qfw7124 Firmware
Qualcomm snapdragon X35 5g Modem-rf System Firmware
Qualcomm qca6174a
Qualcomm snapdragon X72 5g Modem-rf System
Qualcomm snapdragon X75 5g Modem-rf System
Qualcomm qcn6224 Firmware
Qualcomm snapdragon Auto 5g Modem-rf Gen 2
Qualcomm qca6584au Firmware
Qualcomm qfw7114 Firmware
Qualcomm wcd9390 Firmware
Qualcomm qcn6274 Firmware
Qualcomm qcc710
Qualcomm wcd9390
Qualcomm fastconnect 6900 Firmware
Qualcomm qca8337 Firmware
Qualcomm wcd9395 Firmware
Qualcomm ar8035
Qualcomm wsa8840 Firmware
Qualcomm qcn6224
Qualcomm wsa8845h Firmware
Qualcomm wsa8840
Qualcomm wcd9340 Firmware
Qualcomm qca8081 Firmware
Qualcomm qep8111
Qualcomm snapdragon X72 5g Modem-rf System Firmware
Qualcomm qca6584au
Qualcomm qcc710 Firmware
Qualcomm qca6698aq Firmware
Qualcomm wsa8845 Firmware
Qualcomm qca6698aq
Qualcomm qca8081
Qualcomm qep8111 Firmware
Qualcomm fastconnect 6900
Qualcomm wcd9340
Qualcomm qfw7114
Qualcomm
Qualcomm wcd9395
Qualcomm snapdragon X35 5g Modem-rf System
Qualcomm snapdragon X75 5g Modem-rf System Firmware
Qualcomm qfw7124
Qualcomm qca6174a Firmware
Qualcomm fastconnect 7800 Firmware
Qualcomm wsa8845h
Qualcomm snapdragon Auto 5g Modem-rf Gen 2 Firmware
Qualcomm ar8035 Firmware
Qualcomm fastconnect 7800
Qualcomm qcn6274
CPE cpe:2.3:h:qualcomm:qca8337:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9395:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ar8035:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_x72_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6698aq:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_auto_5g_modem-rf_gen_2:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9390_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qep8111_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca8081:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_x75_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcc710_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9390:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qep8111:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfw7114:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcn6274_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_auto_5g_modem-rf_gen_2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9340_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9395_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_8_gen_3_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qfw7124:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x72_5g_modem-rf_system:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn6224:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qfw7114_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn6274:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcn6224_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9340:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcc710:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x35_5g_modem-rf_system:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_x35_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_3_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qfw7124_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x75_5g_modem-rf_system:-:*:*:*:*:*:*:*

06 Aug 2024, 16:30

Type Values Removed Values Added
Summary
  • (es) DOS permanente cuando el transporte DL NAS recibe múltiples payloads, de modo que un payload contiene un contenedor SOR cuya verificación de integridad falló y la otra es LPP donde UE necesita enviar un mensaje de estado a la red.

05 Aug 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-05 15:15

Updated : 2024-11-26 15:48


NVD link : CVE-2024-23350

Mitre link : CVE-2024-23350

CVE.ORG link : CVE-2024-23350


JSON object : View

Products Affected

qualcomm

  • qep8111
  • wsa8840_firmware
  • qfw7114
  • snapdragon_8_gen_3_mobile_platform_firmware
  • qca8337_firmware
  • wsa8840
  • wsa8845
  • wcd9340_firmware
  • snapdragon_x35_5g_modem-rf_system_firmware
  • qfw7114_firmware
  • wcd9390_firmware
  • wsa8845h_firmware
  • qep8111_firmware
  • qca6174a
  • ar8035_firmware
  • snapdragon_x35_5g_modem-rf_system
  • fastconnect_7800
  • snapdragon_auto_5g_modem-rf_gen_2
  • qca6584au
  • qca8337
  • wcd9395
  • qcn6274
  • ar8035
  • qca6698aq
  • qfw7124
  • wsa8845_firmware
  • qcn6224
  • qcc710
  • fastconnect_7800_firmware
  • snapdragon_x75_5g_modem-rf_system_firmware
  • qcn6224_firmware
  • snapdragon_x75_5g_modem-rf_system
  • qca8081
  • qca6174a_firmware
  • qca6698aq_firmware
  • qfw7124_firmware
  • snapdragon_x72_5g_modem-rf_system
  • wcd9390
  • snapdragon_8_gen_3_mobile_platform
  • qcn6274_firmware
  • wsa8845h
  • fastconnect_6900_firmware
  • qcc710_firmware
  • wcd9340
  • fastconnect_6900
  • qca8081_firmware
  • qca6584au_firmware
  • snapdragon_x72_5g_modem-rf_system_firmware
  • snapdragon_auto_5g_modem-rf_gen_2_firmware
  • wcd9395_firmware
CWE
CWE-617

Reachable Assertion