{"id": "CVE-2024-49846", "cveTags": [], "metrics": {"cvssMetricV31": [{"type": "Secondary", "source": "product-security@qualcomm.com", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 8.2, "attackVector": "NETWORK", "baseSeverity": "HIGH", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:L", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "LOW", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 4.2, "exploitabilityScore": 3.9}, {"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.1", "baseScore": 9.1, "attackVector": "NETWORK", "baseSeverity": "CRITICAL", "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H", "integrityImpact": "NONE", "userInteraction": "NONE", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 5.2, "exploitabilityScore": 3.9}]}, "published": "2025-05-06T09:15:22.510", "references": [{"url": "https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bulletin.html", "tags": ["Vendor Advisory"], "source": "product-security@qualcomm.com"}], "vulnStatus": "Analyzed", "weaknesses": [{"type": "Primary", "source": "product-security@qualcomm.com", "description": [{"lang": "en", "value": "CWE-126"}]}, {"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-125"}]}], "descriptions": [{"lang": "en", "value": "Memory corruption while decoding of OTA messages from T3448 IE."}, {"lang": "es", "value": "Corrupci\u00f3n de memoria durante la decodificaci\u00f3n de mensajes OTA de T3448 IE."}], "lastModified": "2025-05-09T19:10:29.963", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca6688aq_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFBD264F-F24A-4CDD-B316-9514A61B91E7"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca6688aq:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "94CC5BC4-011D-4D2B-8891-97FBF61FD783"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5FA1F8F4-EAF2-4704-A8A6-19AD3CA1B577"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca6698aq:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "B3F7853D-09EE-476F-B48D-BB30AEB4A67D"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1D1C53DC-D2F3-4C92-9725-9A85340AF026"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca8081:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "ED0585FF-E390-46E8-8701-70964A4057BB"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2FA8F9DA-1386-4961-B9B2-484E4347852A"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca8337:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "117289C8-7484-4EAE-8F35-A25768F00EED"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qcc710_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2A75D017-032F-4369-917C-567EE2A809F2"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qcc710:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "107F0423-608C-404D-B58B-616A6494418F"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qcn6224_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5F4362D2-30A3-4388-ABB6-293878AD7036"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qcn6224:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BB6AE9A7-386A-473B-9BD5-DA37B1E696C5"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qcn6274_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "88376C1D-AC4D-4EB0-AF6A-274D020F5859"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qcn6274:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E15BA4B4-C97F-45C0-A4AD-7E46387F19A6"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qfw7114_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7456782E-B6CE-42ED-A51E-39907120E28B"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qfw7114:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "637BF4DF-BB40-479F-B696-6AD9D4B35D64"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qfw7124_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D72C4CE0-AB59-4652-854F-94C9998F2712"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qfw7124:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "98720774-11B8-4B4B-BC73-D4DA84E07F78"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:sdx80m_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7CAE7C89-05DD-4083-9DCE-68E02F77EA69"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:sdx80m:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BA282402-64E3-40F7-8A26-B0922777510F"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:sm8750_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "84641A8E-A93C-48C1-86AC-193951BA4D78"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:sm8750:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "74169A4C-0247-4719-887E-BBFB36B04F07"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:sm8750p_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D8ABDBF-BABC-4219-8A18-BDFC8C826B1F"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:sm8750p:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "685D81D0-7E95-4DBA-A05B-7C708A5DFDF0"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:snapdragon_auto_5g_modem-rf_gen_2_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE5FCA7F-1FBE-42AA-B4E6-09CEA02A33EC"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:snapdragon_auto_5g_modem-rf_gen_2:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E2D789BC-43F5-40FB-A191-163C01BA5FBE"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:snapdragon_w5\\+_gen_1_wearable_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A0F761E3-62F7-4A70-A3CA-09FF283ABD9C"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:snapdragon_w5\\+_gen_1_wearable:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F6136853-B719-4DA2-B6C9-C9E8EF02B35A"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:snapdragon_x72_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "205BF723-DBED-4EAE-8B5C-0E01B01E1544"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:snapdragon_x72_5g_modem-rf_system:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9A36A7B8-CF35-4003-AC3E-C5D25288B1A1"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:snapdragon_x75_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "95A98B39-067F-4047-9ADB-7C53F18CBB7B"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:snapdragon_x75_5g_modem-rf_system:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "1C462F32-0E70-472A-A42D-CD0229A97E94"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:sw5100_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA1BF9BB-AF11-46A7-A71C-F7D289E76E3F"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:sw5100:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "7B8455D6-287D-4934-8E4D-F4127A9C0449"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:sw5100p_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB599A9F-0305-4FE4-8623-0F86630FEDCB"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:sw5100p:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "EEB883BF-68B2-4C25-84DC-5DA953BFAA2F"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wcd9340_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8BA28CC6-C8BB-4F50-BFE3-A59F664A4F54"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wcd9340:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "94D2BDF1-764C-48BA-8944-3275E8768078"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wcd9395_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "699056F6-1517-4F25-AE07-4FFCF6923B9F"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wcd9395:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E4C023D2-6FF5-4FFC-B9F2-895979166580"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "11B69595-E488-4590-A150-CE5BE08B5E13"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF680174-5FA6-47D9-8EAB-CC2A37A7BD42"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8832_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7ACAD26E-B79E-4659-91A5-D301281F7D36"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8832:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F0E46DA6-9494-4D92-A4AE-A272AF6ACCCC"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F80BC68E-7476-4A40-9F48-53722FE9A5BF"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "6B36F4B2-BAA3-45AD-9967-0EB482C99708"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA33DE15-C177-43B3-AD50-FF797753D12E"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "AE1A5841-5BCB-4033-ACB9-23F3FCA65309"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5B47BF35-3AA0-4667-842E-19B0FE30BF3C"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8A071672-9405-4418-9141-35CEADBB65AF"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB7CF473-8B25-4851-91F2-1BD693CCDC85"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "91E591F2-8F72-4A5A-9264-2742EB2DABDA"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C88B9C86-2E8E-4DCE-A30C-02977CC00F00"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:ar8035:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "EE473A5A-5CFC-4F08-A173-30717F8BD0D7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B3053D68-C5D8-4D47-A4F0-9F3AF2289E1D"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "638DBC7F-456F-487D-BED2-2214DFF8BEE2"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D527E2B1-2A46-4FBA-9F7A-F5543677C8FB"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "8374DDB3-D484-4141-AE0C-42333D2721F6"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca6595au_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "288F637F-22F8-47CF-B67F-C798A730A1BD"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca6595au:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "D0996EA3-1C92-4933-BE34-9CF625E59FE7"}], "operator": "OR"}], "operator": "AND"}, {"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:o:qualcomm:qca6678aq_firmware:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D001127D-8160-42F0-B8B9-2FAA2976B530"}], "operator": "OR"}, {"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:h:qualcomm:qca6678aq:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C9EB615F-FD4C-450B-AB25-E936FD9816C4"}], "operator": "OR"}], "operator": "AND"}], "sourceIdentifier": "product-security@qualcomm.com"}