CVE-2024-33031: Improper Input Validation in RIL
Published Nov 4, 2024
·Updated
Memory corruption while processing the update SIM PB records request.
Affected Software
32 affected components
All of the following
Qualcomm Wcn3660b Firmware
Qualcomm Wcn3660b
All of the following
Qualcomm Wcn3620 Firmware
Qualcomm Wcn3620
All of the following
Qualcomm Wcd9340 Firmware
Qualcomm Wcd9340
All of the following
Qualcomm Snapdragon X75 5g Modem-rf System Firmware
Qualcomm Snapdragon X75 5g Modem-rf System
All of the following
Qualcomm Snapdragon X72 5g Modem-rf System Firmware
Qualcomm Snapdragon X72 5g Modem-rf System
All of the following
Qualcomm Snapdragon 429 Mobile Platform Firmware
Qualcomm Snapdragon 429 Mobile Platform
All of the following
Qualcomm Sdm429w Firmware
Qualcomm Sdm429w
All of the following
Qualcomm Qfw7124 Firmware
Qualcomm Qfw7124
All of the following
Qualcomm Qfw7114 Firmware
Qualcomm Qfw7114
All of the following
Qualcomm Qcn6274 Firmware
Qualcomm Qcn6274
All of the following
Qualcomm Qcn6224 Firmware
Qualcomm Qcn6224
All of the following
Qualcomm Qcc710 Firmware
Qualcomm Qcc710
All of the following
Qualcomm Qca8337 Firmware
Qualcomm Qca8337
All of the following
Qualcomm Qca8081 Firmware
Qualcomm QCA8081
All of the following
Qualcomm Fastconnect 7800 Firmware
Qualcomm Fastconnect 7800
All of the following
Qualcomm Ar8035 Firmware
Qualcomm Ar8035
Remediation
Event History
Nov 4, 2024
CVE Published
via MITRE·10:04 AM
Data Sourced
via MITRE·10:04 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-33031?
CVE-2024-33031 is classified as a high-severity vulnerability due to potential memory corruption issues.
2
How do I fix CVE-2024-33031?
To fix CVE-2024-33031, ensure that you update to the latest firmware version provided by Qualcomm.
3
Which Qualcomm devices are affected by CVE-2024-33031?
CVE-2024-33031 affects several Qualcomm firmware versions including those related to WCN3660B, WCN3620, and others listed in the advisory.
4
What type of vulnerability is CVE-2024-33031?
CVE-2024-33031 is a memory corruption vulnerability that occurs during the processing of SIM PB records requests.
5
What are the potential impacts of CVE-2024-33031?
The potential impacts of CVE-2024-33031 include system instability and unauthorized access due to memory corruption.