CVE-2024-38412

Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_8_gen_3_mobile_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_3_mobile:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:wcd9390_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9390:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:wcd9395_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9395:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*

History

05 Feb 2025, 13:58

Type Values Removed Values Added
CPE cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9390_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9395_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_3_mobile:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9390:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9395:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_8_gen_3_mobile_firmware:-:*:*:*:*:*:*:*
First Time Qualcomm wcd9390
Qualcomm
Qualcomm wsa8845 Firmware
Qualcomm wcd9395 Firmware
Qualcomm wsa8845
Qualcomm snapdragon 8 Gen 3 Mobile
Qualcomm wsa8845h Firmware
Qualcomm fastconnect 7800
Qualcomm wsa8840 Firmware
Qualcomm wcd9390 Firmware
Qualcomm wcd9395
Qualcomm fastconnect 7800 Firmware
Qualcomm snapdragon 8 Gen 3 Mobile Firmware
Qualcomm wsa8845h
Qualcomm wsa8840
Summary
  • (es) Corrupción de memoria al invocar llamadas IOCTL desde el espacio del usuario al espacio del kernel para gestionar errores de sesión.
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/february-2025-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/february-2025-bulletin.html - Patch, Vendor Advisory

03 Feb 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-03 17:15

Updated : 2025-02-05 13:58


NVD link : CVE-2024-38412

Mitre link : CVE-2024-38412

CVE.ORG link : CVE-2024-38412


JSON object : View

Products Affected

qualcomm

  • fastconnect_7800_firmware
  • snapdragon_8_gen_3_mobile_firmware
  • wsa8840_firmware
  • wsa8840
  • wcd9395
  • wcd9395_firmware
  • wsa8845
  • wcd9390_firmware
  • wsa8845h_firmware
  • wsa8845h
  • wcd9390
  • snapdragon_8_gen_3_mobile
  • fastconnect_7800
  • wsa8845_firmware
CWE
CWE-416

Use After Free