First published: Mon Dec 02 2024(Updated: )
Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Qualcomm C-V2X 9150 | ||
Qualcomm C-V2X 9150 Firmware | ||
All of | ||
Qualcomm FastConnect 6800 Firmware | ||
Qualcomm FastConnect 6800 Firmware | ||
All of | ||
Qualcomm FastConnect 6900 Firmware | ||
Qualcomm Fastconnect 6900 Firmware | ||
All of | ||
Qualcomm FastConnect 7800 Firmware | ||
Qualcomm Fastconnect 7800 Firmware | ||
All of | ||
Qualcomm QAM8295P | ||
Qualcomm QAM8295P | ||
All of | ||
Qualcomm QCA6391 Firmware | ||
Qualcomm QCA6391 Firmware | ||
All of | ||
Qualcomm QCA6426 Firmware | ||
Qualcomm QCA6426 Firmware | ||
All of | ||
Qualcomm QCA6436 Firmware | ||
Qualcomm QCA6436 Firmware | ||
All of | ||
Qualcomm QCA6574 Firmware | ||
Qualcomm QCA6574AU | ||
All of | ||
Qualcomm QCA6696 Firmware | ||
Qualcomm QCA6696 Firmware | ||
All of | ||
Qualcomm QCA8337 Firmware | ||
Qualcomm QCA8337 Firmware | ||
All of | ||
Qualcomm QCN9074 Firmware | ||
Qualcomm QCN9074 Firmware | ||
All of | ||
Qualcomm QCS410 Firmware | ||
Qualcomm QCS410 Firmware | ||
All of | ||
Qualcomm QCS610 Firmware | ||
Qualcomm QCS610 Firmware | ||
All of | ||
qualcomm SM8250 firmware | ||
Qualcomm QSM8250 | ||
All of | ||
Qualcomm Video Collaboration VC1 Platform | ||
Qualcomm Video Collaboration VC1 Platform Firmware | ||
All of | ||
Qualcomm Video Collaboration VC3 Firmware | ||
Qualcomm Video Collaboration VC3 Platform Firmware | ||
All of | ||
Qualcomm SA6145P Firmware | ||
Qualcomm SA6145P Firmware | ||
All of | ||
Qualcomm SA6150P Firmware | ||
Qualcomm SA6150P Firmware | ||
All of | ||
Qualcomm SA6155 | ||
Qualcomm SA6155P | ||
All of | ||
Qualcomm SA8145P | ||
Qualcomm SA8145P Firmware | ||
All of | ||
Qualcomm SA8150P Firmware | ||
Qualcomm SA8150P Firmware | ||
All of | ||
Qualcomm SA8155 | ||
Qualcomm SA8155P Firmware | ||
All of | ||
Qualcomm SA8195P | ||
Qualcomm SA8195P Firmware | ||
All of | ||
Qualcomm SA8295P Firmware | ||
Qualcomm SA8295P Firmware | ||
All of | ||
qualcomm sa8530p | ||
Qualcomm SA8530P | ||
All of | ||
Qualcomm SA8540P | ||
Qualcomm SA8540P Firmware | ||
All of | ||
Qualcomm SA9000P Firmware | ||
Qualcomm SA9000P Firmware | ||
All of | ||
Qualcomm Snapdragon 865 5G Firmware | ||
Qualcomm Snapdragon 865 5G Firmware | ||
All of | ||
Qualcomm SDX55M Firmware | ||
Qualcomm SDX55 Firmware | ||
All of | ||
Qualcomm Snapdragon 8 Gen 1 Mobile Platform | ||
Qualcomm Snapdragon 8 Gen 1 Mobile Firmware | ||
All of | ||
Qualcomm Snapdragon 865 5G Mobile Firmware | ||
Qualcomm Snapdragon 865 5G Mobile Firmware | ||
All of | ||
Qualcomm Snapdragon 865+ 5G Mobile Platform Firmware | ||
qualcomm snapdragon 865+ 5g mobile platform | ||
All of | ||
Qualcomm Snapdragon 870 5G Mobile | ||
Qualcomm Snapdragon 870 5G Mobile | ||
All of | ||
Qualcomm Snapdragon W5+ Gen 1 Wearable Platform Firmware | ||
Qualcomm Snapdragon W5+ Gen 1 Wearable Platform | ||
All of | ||
Qualcomm Snapdragon X55 5G-RF System Firmware | ||
Qualcomm Snapdragon X55 5G Modem-RF System Firmware | ||
All of | ||
Qualcomm Snapdragon XR2 5G Firmware | ||
Qualcomm Snapdragon XR2 5G Firmware | ||
All of | ||
Qualcomm SW5100P | ||
Qualcomm SW5100P | ||
All of | ||
Qualcomm SW5100 Firmware | ||
Qualcomm SW5100 Firmware | ||
All of | ||
Qualcomm SXR2130P Firmware | ||
Qualcomm SXR2130 Firmware | ||
All of | ||
Qualcomm WCD9341 | ||
Qualcomm WCD9341 Firmware | ||
All of | ||
Qualcomm WCD9370 Firmware | ||
Qualcomm WCD9370 Firmware | ||
All of | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
All of | ||
Qualcomm WCN3660B | ||
Qualcomm WCN3660B Firmware | ||
All of | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3680B Firmware | ||
All of | ||
Qualcomm WCN3950 Firmware | ||
Qualcomm WCN3950 Firmware | ||
All of | ||
Qualcomm Wcn3980 | ||
Qualcomm WCN3980 | ||
All of | ||
Qualcomm WCN3988 Firmware | ||
Qualcomm WCN3988 Firmware | ||
All of | ||
Qualcomm WSA8810 | ||
Qualcomm WSA8810 Firmware | ||
All of | ||
Qualcomm WSA8815 Firmware | ||
Qualcomm WSA8815 Firmware | ||
All of | ||
Qualcomm WSA8830 | ||
Qualcomm WSA8830 | ||
All of | ||
Qualcomm WSA8835 | ||
Qualcomm WSA8835 Firmware |
https://docs.qualcomm.com/product/publicresources/securitybulletin/december-2024-bulletin.html
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-33036 is classified as a high severity vulnerability due to potential memory corruption and invalid memory access.
To fix CVE-2024-33036, apply the latest firmware update provided by Qualcomm for the affected devices.
CVE-2024-33036 affects various Qualcomm devices, particularly those using the camera driver that parses sensor packets.
Exploiting CVE-2024-33036 can lead to significant memory allocation issues or allow unauthorized access to sensitive data.
As of now, there is no public indication that CVE-2024-33036 is actively being exploited in the wild.