First published: Mon Dec 02 2024(Updated: )
Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Qualcomm FastConnect 6800 Firmware | ||
Qualcomm FastConnect 6800 Firmware | ||
All of | ||
Qualcomm FastConnect 6900 Firmware | ||
Qualcomm Fastconnect 6900 Firmware | ||
All of | ||
Qualcomm Fastconnect 7800 Firmware | ||
Qualcomm Fastconnect 7800 Firmware | ||
All of | ||
Qualcomm QAM8255P | ||
Qualcomm QAM8255P Firmware | ||
All of | ||
Qualcomm QCA6391 Firmware | ||
Qualcomm QCA6391 Firmware | ||
All of | ||
Qualcomm QCA6426 Firmware | ||
Qualcomm QCA6426 Firmware | ||
All of | ||
Qualcomm QCA6436 Firmware | ||
Qualcomm QCA6436 Firmware | ||
All of | ||
Qualcomm QCA6595AU Firmware | ||
Qualcomm QCA6595AU Firmware | ||
All of | ||
Qualcomm QCA6678AQ Firmware | ||
Qualcomm QCA6678AQ Firmware | ||
All of | ||
Qualcomm SA8255P Firmware | ||
Qualcomm SA8255P Firmware | ||
All of | ||
Qualcomm Snapdragon 865 5G Firmware | ||
Qualcomm Snapdragon 865 5G Firmware | ||
All of | ||
Qualcomm Snapdragon 8 Gen 1 Mobile Platform | ||
Qualcomm Snapdragon 8 Gen 1 Mobile Firmware | ||
All of | ||
Qualcomm Snapdragon 865 5G Mobile Firmware | ||
Qualcomm Snapdragon 865 5G Mobile Firmware | ||
All of | ||
Qualcomm Snapdragon 865+ 5G Mobile Platform Firmware | ||
qualcomm snapdragon 865+ 5g mobile platform | ||
All of | ||
Qualcomm Snapdragon 870 5G Mobile | ||
Qualcomm Snapdragon 870 5G | ||
All of | ||
Qualcomm Snapdragon W5+ Gen 1 Wearable Platform Firmware | ||
Qualcomm Snapdragon W5+ Gen 1 Wearable Platform | ||
All of | ||
Qualcomm Snapdragon X55 5G-RF System Firmware | ||
Qualcomm Snapdragon X55 5G Modem-RF System Firmware | ||
All of | ||
Qualcomm Snapdragon XR2 5G Firmware | ||
Qualcomm Snapdragon XR2 5G Firmware | ||
All of | ||
Qualcomm SW5100P | ||
Qualcomm SW5100P | ||
All of | ||
Qualcomm SW5100 Firmware | ||
Qualcomm SW5100 Firmware | ||
All of | ||
qualcomm SXR2130P firmware | ||
Qualcomm SXR2130 | ||
All of | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
All of | ||
Qualcomm WCN3660B | ||
Qualcomm WCN3660B Firmware | ||
All of | ||
Qualcomm WCN3680B Firmware | ||
Qualcomm WCN3680B Firmware | ||
All of | ||
Qualcomm Wcn3980 | ||
qualcomm wcn3980 firmware | ||
All of | ||
qualcomm wcn3988 firmware | ||
Qualcomm WCN3988 | ||
All of | ||
Qualcomm WSA8810 | ||
Qualcomm WSA8810 Firmware | ||
All of | ||
qualcomm wsa8815 firmware | ||
qualcomm wsa8815 firmware | ||
All of | ||
Qualcomm WSA8830 | ||
Qualcomm WSA8830 | ||
All of | ||
Qualcomm WSA8835 | ||
Qualcomm WSA8835 Firmware |
https://docs.qualcomm.com/product/publicresources/securitybulletin/december-2024-bulletin.html
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-33040 has a high severity due to potential memory corruption leading to system instability and security breaches.
To fix CVE-2024-33040, apply the latest firmware updates provided by Qualcomm for the affected devices.
Devices affected by CVE-2024-33040 include various Qualcomm chipsets like FastConnect 6800, 6900, 7800, and others listed in the security advisory.
CVE-2024-33040 is a memory corruption vulnerability that occurs due to a race condition while releasing buffers from user space.
As of now, there is no public indication that CVE-2024-33040 is being actively exploited in the wild.