CVE-2024-21472: Use After Free in Kernel
Published Apr 1, 2024
·Updated
Memory corruption in Kernel while handling GPU operations.
Affected Software
79 affected components
Google Android
All of the following
Qualcomm Fastconnect 6900 Firmware
Qualcomm Fastconnect 6900
All of the following
Qualcomm Fastconnect 7800 Firmware
Qualcomm Fastconnect 7800
All of the following
Qualcomm Qam8255p Firmware
Qualcomm Qam8255p
All of the following
Qualcomm Qam8295p Firmware
Qualcomm Qam8295p
All of the following
Qualcomm Qam8650p Firmware
Qualcomm Qam8650p
All of the following
Qualcomm Qam8775p Firmware
Qualcomm Qam8775p
All of the following
Qualcomm Qca6574 Firmware
Qualcomm QCA6574
All of the following
Qualcomm Qca6574a Firmware
Qualcomm Qca6574a
All of the following
Qualcomm Qca6574au Firmware
Qualcomm QCA6574AU
All of the following
Qualcomm Qca6584au Firmware
Qualcomm QCA6584AU
All of the following
Qualcomm Qca6595 Firmware
Qualcomm Qca6595
All of the following
Qualcomm Qca6595au Firmware
Qualcomm Qca6595au
All of the following
Qualcomm Qca6696 Firmware
Qualcomm Qca6696
All of the following
Qualcomm Qca6698aq Firmware
Qualcomm Qca6698aq
All of the following
Qualcomm Qca6797aq Firmware
Qualcomm Qca6797aq
All of the following
Qualcomm Qcm4325 Firmware
Qualcomm Qcm4325
All of the following
Qualcomm Sa6155p Firmware
Qualcomm Sa6155p
All of the following
Qualcomm Sa8155p Firmware
Qualcomm Sa8155p
All of the following
Qualcomm Sa8195p Firmware
Qualcomm Sa8195p
All of the following
Qualcomm Sa8255p Firmware
Qualcomm Sa8255p
All of the following
Qualcomm Sa8295p Firmware
Qualcomm Sa8295p
All of the following
Qualcomm Sa8770p Firmware
Qualcomm Sa8770p
All of the following
Qualcomm Sa8775p Firmware
Qualcomm Sa8775p
All of the following
Qualcomm Sa9000p Firmware
Qualcomm Sa9000p
All of the following
Qualcomm Sg8275p Firmware
Qualcomm Sg8275p
All of the following
Qualcomm Snapdragon 680 4g Mobile Firmware
Qualcomm Snapdragon 680 4g Mobile
All of the following
Qualcomm Snapdragon 685 4g Mobile Firmware
Qualcomm Snapdragon 685 4g Mobile
All of the following
Qualcomm Snapdragon 8 Gen 1 Mobile Firmware
Qualcomm Snapdragon 8 Gen 1 Mobile
All of the following
Qualcomm Snapdragon Auto 5g Modem-rf Gen 2 Firmware
Qualcomm Snapdragon Auto 5g Modem-rf Gen 2
All of the following
Qualcomm Wcd9380 Firmware
Qualcomm Wcd9380
All of the following
Qualcomm Wcd9385 Firmware
Qualcomm Wcd9385
All of the following
Qualcomm Wcd9390 Firmware
Qualcomm Wcd9390
All of the following
Qualcomm Wcd9395 Firmware
Qualcomm Wcd9395
All of the following
Qualcomm Wcn3950 Firmware
Qualcomm Wcn3950
All of the following
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
All of the following
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835
All of the following
Qualcomm Wsa8840 Firmware
Qualcomm Wsa8840
All of the following
Qualcomm Wsa8845 Firmware
Qualcomm Wsa8845
All of the following
Qualcomm Wsa8845h Firmware
Qualcomm Wsa8845h
Remediation
Event History
Apr 1, 2024
CVE Published
via Android·12:00 AM
CVE Published
via MITRE·03:06 PM
Data Sourced
via MITRE·03:06 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-21472?
The severity of CVE-2024-21472 is critical due to potential memory corruption in the kernel during GPU operations.
2
How do I fix CVE-2024-21472?
To fix CVE-2024-21472, ensure that you update your affected Qualcomm firmware or Android device to the latest security patches.
3
What software is affected by CVE-2024-21472?
CVE-2024-21472 affects various Qualcomm firmware, including Fastconnect and Snapdragon firmware, as well as Google Android.
4
What type of vulnerability is CVE-2024-21472?
CVE-2024-21472 is a memory corruption vulnerability occurring in the kernel while handling GPU operations.
5
Can CVE-2024-21472 lead to remote code execution?
Yes, CVE-2024-21472 could potentially allow attackers to execute arbitrary code on affected devices due to memory corruption.