CVE-2024-33029: Use After Free in DSP Services
Published Nov 4, 2024
·Updated
Memory corruption while handling the PDR in driver for getting the remote heap maps.
Affected Software
6 affected components
All of the following
Qualcomm Snapdragon Auto 5g Modem-rf Gen 2 Firmware
Qualcomm Snapdragon Auto 5g Modem-rf Gen 2
All of the following
Qualcomm Qca6698aq Firmware
Qualcomm Qca6698aq
All of the following
Qualcomm Qca6584au Firmware
Qualcomm QCA6584AU
Remediation
Event History
Nov 4, 2024
CVE Published
via MITRE·10:04 AM
Data Sourced
via MITRE·10:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-33029?
CVE-2024-33029 has not been assigned a severity rating yet, but it involves memory corruption, which can be critical.
2
How do I fix CVE-2024-33029?
To fix CVE-2024-33029, update to the latest firmware version provided by Qualcomm for the affected devices.
3
What devices are affected by CVE-2024-33029?
CVE-2024-33029 affects Qualcomm Snapdragon Auto 5G Modem-RF Gen 2 Firmware, QCA6698AQ Firmware, and QCA6584AU Firmware.
4
What type of vulnerability is CVE-2024-33029?
CVE-2024-33029 is a memory corruption vulnerability that occurs while handling the PDR in certain Qualcomm drivers.
5
Can CVE-2024-33029 lead to remote exploitation?
Yes, CVE-2024-33029 could potentially allow remote exploitation due to memory corruption.