First published: Mon Feb 03 2025(Updated: )
Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Qualcomm FastConnect 6900 Firmware | ||
Qualcomm Fastconnect 6900 Firmware | ||
All of | ||
Qualcomm Fastconnect 7800 Firmware | ||
Qualcomm Fastconnect 7800 Firmware | ||
All of | ||
Qualcomm QCM8550 | ||
qualcomm qcm8550 firmware | ||
All of | ||
Qualcomm QCS6490 Firmware | ||
Qualcomm QCS6490 Firmware | ||
All of | ||
Qualcomm QCS8550 Firmware | ||
Qualcomm QCS8550 Firmware | ||
All of | ||
Qualcomm Video Collaboration VC3 Platform Firmware | ||
Qualcomm Video Collaboration VC3 Platform | ||
All of | ||
Qualcomm SG8275 Firmware | ||
Qualcomm SG8275 Firmware | ||
All of | ||
Qualcomm SM8550 Firmware | ||
Qualcomm SM8550P | ||
All of | ||
Qualcomm Snapdragon 8 Gen 2 Firmware | ||
Qualcomm Snapdragon 8 Gen 2 | ||
All of | ||
Qualcomm Snapdragon 8 Gen 3 Firmware | ||
Qualcomm Snapdragon 8 Gen 3 Mobile Platform | ||
All of | ||
Qualcomm Snapdragon 8+ Gen 2 Mobile Firmware | ||
Qualcomm Snapdragon 8+ Gen 2 Mobile | ||
All of | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
All of | ||
Qualcomm WCD9385 | ||
Qualcomm WCD9385 Firmware | ||
All of | ||
Qualcomm WCD9390 Firmware | ||
Qualcomm WCD9390 Firmware | ||
All of | ||
Qualcomm WCD9395 | ||
qualcomm wcd9395 firmware | ||
All of | ||
Qualcomm WSA8840 Firmware | ||
Qualcomm WSA8840 Firmware | ||
All of | ||
Qualcomm WSA8845H | ||
Qualcomm WSA8845 Firmware | ||
All of | ||
Qualcomm WSA8845H | ||
Qualcomm WSA8845H Firmware |
https://docs.qualcomm.com/product/publicresources/securitybulletin/february-2025-bulletin.html
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-38411 is categorized with a severity level that indicates potential risk to the integrity of systems using affected Qualcomm firmware.
To mitigate CVE-2024-38411, it is recommended to apply the latest firmware updates provided by Qualcomm for the affected devices.
CVE-2024-38411 affects various Qualcomm firmware versions, including the Fastconnect series and Snapdragon series among others.
The criticality of CVE-2024-38411 largely depends on the specific device and its use case.
CVE-2024-38411 is a memory corruption vulnerability that arises from improper handling of IOCTL calls between user-space and kernel-space.