{"id": "CVE-2024-23370", "cveTags": [], "metrics": {"cvssMetricV31": [{"type": "Primary", "source": "product-security@qualcomm.com", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 6.7, "attackVector": "LOCAL", "baseSeverity": "MEDIUM", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "HIGH", "confidentialityImpact": "HIGH"}, "impactScore": 5.9, "exploitabilityScore": 0.8}]}, "published": "2024-10-07T13:15:10.927", "references": [{"url": "https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html", "tags": ["Vendor Advisory"], "source": "product-security@qualcomm.com"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Secondary", "source": "product-security@qualcomm.com", "description": [{"lang": "en", "value": "CWE-416"}]}, {"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-416"}]}], "descriptions": [{"lang": "en", "value": "Memory corruption when a process invokes IOCTL calls from user-space to create a HAB virtual channel and another process invokes IOCTL calls to destroy the same."}, {"lang": "es", "value": "Corrupci\u00f3n de memoria cuando un proceso invoca llamadas IOCTL desde el espacio de usuario para crear un canal virtual HAB y otro proceso invoca llamadas IOCTL para destruirlo."}], "lastModified": "2024-10-16T20:27:07.517", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F80BC68E-7476-4A40-9F48-53722FE9A5BF"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "6B36F4B2-BAA3-45AD-9967-0EB482C99708"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "11B69595-E488-4590-A150-CE5BE08B5E13"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF680174-5FA6-47D9-8EAB-CC2A37A7BD42"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wcn3988_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E4BFB25F-013B-48E3-99FF-3E8687F94423"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wcn3988:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF676C5B-838B-446C-A689-6A25AB8A87E2"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9C6E9038-9B18-4958-BE1E-215901C9B4B2"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B36D3274-F8D0-49C5-A6D5-95F5DC6D1950"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:sw5100p_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB599A9F-0305-4FE4-8623-0F86630FEDCB"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:sw5100p:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "EEB883BF-68B2-4C25-84DC-5DA953BFAA2F"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:sw5100_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA1BF9BB-AF11-46A7-A71C-F7D289E76E3F"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:sw5100:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7B8455D6-287D-4934-8E4D-F4127A9C0449"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:snapdragon_auto_5g_modem-rf_gen_2_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE5FCA7F-1FBE-42AA-B4E6-09CEA02A33EC"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:snapdragon_auto_5g_modem-rf_gen_2:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E2D789BC-43F5-40FB-A191-163C01BA5FBE"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca9377_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C4D2B46E-3996-42FD-B932-09E92C02EC8A"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca9377:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "98E58C63-F253-4DCC-8A14-48FEB64B4C3D"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca9367_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2AD0E09B-92EC-4974-BC5F-66C3AAF586B1"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca9367:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "3FBA48AB-85F4-4D6C-B811-87756B80FFB8"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FA1F8F4-EAF2-4704-A8A6-19AD3CA1B577"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca6698aq:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B3F7853D-09EE-476F-B48D-BB30AEB4A67D"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3DDA896-576C-44B8-85B6-F71F473F776B"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca6584au:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "51A87BDA-5B24-4212-BAB3-D2BBB2F4162E"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "product-security@qualcomm.com"}