First published: Mon Mar 03 2025(Updated: )
Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
qualcomm sa8770p | ||
qualcomm sa8770p firmware | ||
All of | ||
Qualcomm SA8775P | ||
Qualcomm SA8775P | ||
All of | ||
qualcomm sa9000p firmware | ||
Qualcomm SA9000P | ||
All of | ||
Qualcomm SDM429W | ||
qualcomm SDM429W firmware | ||
All of | ||
Qualcomm SDA429W Firmware | ||
Qualcomm Snapdragon 429 Mobile | ||
All of | ||
Qualcomm Snapdragon 8 Gen 1 Mobile Firmware | ||
Qualcomm Snapdragon 8 Gen 1 Mobile Firmware | ||
All of | ||
Qualcomm SXR2230P | ||
Qualcomm SXR2230P | ||
All of | ||
Qualcomm SXR2250P | ||
Qualcomm SXR2250P | ||
All of | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
All of | ||
Qualcomm WCD9385 | ||
Qualcomm WCD9385 Firmware | ||
All of | ||
Qualcomm WCN3620 Firmware | ||
Qualcomm WCN3620 Firmware | ||
All of | ||
Qualcomm WCN3660B | ||
Qualcomm WCN3660B Firmware | ||
All of | ||
Qualcomm WSA8830 | ||
Qualcomm WSA8830 | ||
All of | ||
Qualcomm WSA8832 | ||
qualcomm wsa8832 firmware | ||
All of | ||
Qualcomm WSA8835 | ||
Qualcomm WSA8835 Firmware | ||
All of | ||
Qualcomm FastConnect 6900 Firmware | ||
Qualcomm Fastconnect 6900 Firmware | ||
All of | ||
Qualcomm Fastconnect 7800 Firmware | ||
Qualcomm Fastconnect 7800 Firmware | ||
All of | ||
Qualcomm QAM8255P | ||
Qualcomm QAM8255P Firmware | ||
All of | ||
Qualcomm QAM8775P | ||
qualcomm qam8775p Firmware | ||
All of | ||
Qualcomm SA8255P Firmware | ||
Qualcomm SA8255P Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-43059 is currently classified as high due to potential memory corruption risks.
To fix CVE-2024-43059, users should update the affected Qualcomm firmware to the latest version provided by the manufacturer.
CVE-2024-43059 affects various Qualcomm firmware including those for SA8770P, SA8775P, SA9000P, SDM429W, and several others.
CVE-2024-43059 is a memory corruption vulnerability that can be exploited through IOCTL calls from user space.
CVE-2024-43059 may allow an attacker to execute arbitrary code, potentially leading to remote exploitation depending on the system configuration.