CVE-2024-21482: Improper Restriction of Operations within the Bounds of a Memory Buffer in Linux Boot Loader
Published Jul 1, 2024
·Updated
Memory corruption during the secure boot process, when the bootm command is used, it bypasses the authentication of the kernel/rootfs image.
Affected Software
138 affected components
All of the following
Qualcomm Csr8811 Firmware
Qualcomm Csr8811
All of the following
Qualcomm Immersive Home 214 Platform Firmware
Qualcomm Immersive Home 214 Platform
All of the following
Qualcomm Immersive Home 216 Platform Firmware
Qualcomm Immersive Home 216 Platform
All of the following
Qualcomm Immersive Home 316 Platform Firmware
Qualcomm Immersive Home 316 Platform
All of the following
Qualcomm Immersive Home 318 Platform Firmware
Qualcomm Immersive Home 318 Platform
All of the following
Qualcomm Immersive Home 3210 Platform Firmware
Qualcomm Immersive Home 3210 Platform
All of the following
Qualcomm Immersive Home 326 Platform Firmware
Qualcomm Immersive Home 326 Platform
All of the following
Qualcomm Ipq5010 Firmware
Qualcomm Ipq5010
All of the following
Qualcomm Ipq5028 Firmware
Qualcomm Ipq5028
All of the following
Qualcomm Ipq5302 Firmware
Qualcomm Ipq5302
All of the following
Qualcomm Ipq5312 Firmware
Qualcomm Ipq5312
All of the following
Qualcomm Ipq5332 Firmware
Qualcomm Ipq5332
All of the following
Qualcomm Ipq6000 Firmware
Qualcomm Ipq6000
All of the following
Qualcomm Ipq6010 Firmware
Qualcomm Ipq6010
All of the following
Qualcomm Ipq6018 Firmware
Qualcomm IPQ6018
All of the following
Qualcomm Ipq6028 Firmware
Qualcomm Ipq6028
All of the following
Qualcomm Ipq8070a Firmware
Qualcomm Ipq8070a
All of the following
Qualcomm Ipq8071a Firmware
Qualcomm Ipq8071a
All of the following
Qualcomm Ipq8072a Firmware
Qualcomm Ipq8072a
All of the following
Qualcomm Ipq8074a Firmware
Qualcomm Ipq8074a
All of the following
Qualcomm Ipq8076 Firmware
Qualcomm Ipq8076
All of the following
Qualcomm Ipq8076a Firmware
Qualcomm Ipq8076a
All of the following
Qualcomm Ipq8078 Firmware
Qualcomm Ipq8078
All of the following
Qualcomm Ipq8078a Firmware
Qualcomm Ipq8078a
All of the following
Qualcomm Ipq8173 Firmware
Qualcomm Ipq8173
All of the following
Qualcomm Ipq8174 Firmware
Qualcomm Ipq8174
All of the following
Qualcomm Ipq9008 Firmware
Qualcomm Ipq9008
All of the following
Qualcomm Ipq9554 Firmware
Qualcomm Ipq9554
All of the following
Qualcomm Ipq9570 Firmware
Qualcomm Ipq9570
All of the following
Qualcomm Ipq9574 Firmware
Qualcomm IPQ9574
All of the following
Qualcomm Qca4024 Firmware
Qualcomm Qca4024
All of the following
Qualcomm Qca8075 Firmware
Qualcomm Qca8075
All of the following
Qualcomm Qca8081 Firmware
Qualcomm QCA8081
All of the following
Qualcomm Qca8082 Firmware
Qualcomm Qca8082
All of the following
Qualcomm Qca8084 Firmware
Qualcomm Qca8084
All of the following
Qualcomm Qca8085 Firmware
Qualcomm Qca8085
All of the following
Qualcomm Qca8386 Firmware
Qualcomm Qca8386
All of the following
Qualcomm Qca9888 Firmware
Qualcomm Qca9888
All of the following
Qualcomm Qca9889 Firmware
Qualcomm Qca9889
All of the following
Qualcomm Qcf8000 Firmware
Qualcomm Qcf8000
All of the following
Qualcomm Qcf8001 Firmware
Qualcomm Qcf8001
All of the following
Qualcomm Qcn5022 Firmware
Qualcomm Qcn5022
All of the following
Qualcomm Qcn5024 Firmware
Qualcomm Qcn5024
All of the following
Qualcomm Qcn5052 Firmware
Qualcomm Qcn5052
All of the following
Qualcomm Qcn5122 Firmware
Qualcomm Qcn5122
All of the following
Qualcomm Qcn5124 Firmware
Qualcomm Qcn5124
All of the following
Qualcomm Qcn5152 Firmware
Qualcomm Qcn5152
All of the following
Qualcomm Qcn5154 Firmware
Qualcomm Qcn5154
All of the following
Qualcomm Qcn5164 Firmware
Qualcomm Qcn5164
All of the following
Qualcomm Qcn6023 Firmware
Qualcomm Qcn6023
All of the following
Qualcomm Qcn6024 Firmware
Qualcomm Qcn6024
All of the following
Qualcomm Qcn6112 Firmware
Qualcomm Qcn6112
All of the following
Qualcomm Qcn6122 Firmware
Qualcomm Qcn6122
All of the following
Qualcomm Qcn6132 Firmware
Qualcomm Qcn6132
All of the following
Qualcomm Qcn6402 Firmware
Qualcomm Qcn6402
All of the following
Qualcomm Qcn6412 Firmware
Qualcomm Qcn6412
All of the following
Qualcomm Qcn6422 Firmware
Qualcomm Qcn6422
All of the following
Qualcomm Qcn6432 Firmware
Qualcomm Qcn6432
All of the following
Qualcomm Qcn9000 Firmware
Qualcomm Qcn9000
All of the following
Qualcomm Qcn9022 Firmware
Qualcomm Qcn9022
All of the following
Qualcomm Qcn9024 Firmware
Qualcomm Qcn9024
All of the following
Qualcomm Qcn9070 Firmware
Qualcomm Qcn9070
All of the following
Qualcomm Qcn9072 Firmware
Qualcomm Qcn9072
All of the following
Qualcomm Qcn9074 Firmware
Qualcomm Qcn9074
All of the following
Qualcomm Qcn9100 Firmware
Qualcomm Qcn9100
All of the following
Qualcomm Qcn9274 Firmware
Qualcomm Qcn9274
All of the following
Qualcomm Sdx55 Firmware
Qualcomm Sdx55
All of the following
Qualcomm Sdx65m Firmware
Qualcomm Sdx65m
All of the following
Qualcomm Snapdragon X65 5g Modem-rf System Firmware
Qualcomm Snapdragon X65 5g Modem-rf System
Remediation
Event History
Jul 1, 2024
CVE Published
via MITRE·02:17 PM
Data Sourced
via MITRE·02:17 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-21482?
CVE-2024-21482 has a high severity due to the potential impact of memory corruption during the secure boot process.
2
How do I fix CVE-2024-21482?
To fix CVE-2024-21482, ensure that you apply the relevant firmware updates provided by Qualcomm.
3
What software is affected by CVE-2024-21482?
CVE-2024-21482 affects various Qualcomm firmware systems, including Csr8811 and Immersive Home platforms.
4
Can CVE-2024-21482 lead to unauthorized access?
Yes, CVE-2024-21482 can potentially allow unauthorized access by bypassing authentication of kernel/rootfs images.
5
Is CVE-2024-21482 exploitable remotely?
CVE-2024-21482 may be exploitable remotely depending on how the affected systems are configured and secured.