First published: Mon Jan 06 2025(Updated: )
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Qualcomm MSM8996AU Firmware | ||
Qualcomm MSM8996AU Firmware | ||
All of | ||
qualcomm qam8255p firmware | ||
qualcomm qam8255p | ||
All of | ||
qualcomm qam8295p firmware | ||
qualcomm qam8295p | ||
All of | ||
qualcomm qam8620p firmware | ||
qualcomm qam8620p | ||
All of | ||
qualcomm qam8650p Firmware | ||
qualcomm qam8650p | ||
All of | ||
qualcomm qam8775p Firmware | ||
qualcomm qam8775p | ||
All of | ||
qualcomm qamsrv1h firmware | ||
qualcomm qamsrv1h | ||
All of | ||
qualcomm qamsrv1m firmware | ||
qualcomm qamsrv1m | ||
All of | ||
Qualcomm qca6564a firmware | ||
Qualcomm qca6564a | ||
All of | ||
qualcomm qca6564au firmware | ||
qualcomm qca6564au | ||
All of | ||
qualcomm qca6574a firmware | ||
qualcomm qca6574a | ||
All of | ||
qualcomm qca6574au firmware | ||
qualcomm qca6574au | ||
All of | ||
qualcomm QCA6584AU firmware | ||
qualcomm QCA6584AU | ||
All of | ||
qualcomm qca6595 firmware | ||
qualcomm qca6595 | ||
All of | ||
qualcomm qca6595au firmware | ||
qualcomm qca6595au | ||
All of | ||
qualcomm qca6688aq firmware | ||
qualcomm qca6688aq | ||
All of | ||
qualcomm qca6696 firmware | ||
qualcomm qca6696 | ||
All of | ||
qualcomm qca6698aq firmware | ||
qualcomm qca6698aq | ||
All of | ||
Qualcomm sa6145p firmware | ||
Qualcomm sa6145p | ||
All of | ||
Qualcomm sa6150p firmware | ||
Qualcomm sa6150p | ||
All of | ||
Qualcomm sa6155 firmware | ||
Qualcomm sa6155 | ||
All of | ||
Qualcomm Sa6155p Firmware | ||
qualcomm SA6155P | ||
All of | ||
qualcomm sa7255p firmware | ||
qualcomm sa7255p | ||
All of | ||
qualcomm sa7775p firmware | ||
qualcomm sa7775p | ||
All of | ||
qualcomm sa8145p firmware | ||
qualcomm sa8145p | ||
All of | ||
Qualcomm sa8150p firmware | ||
Qualcomm sa8150p | ||
All of | ||
Qualcomm sa8155 firmware | ||
Qualcomm sa8155 | ||
All of | ||
Qualcomm sa8155p firmware | ||
Qualcomm sa8155p | ||
All of | ||
Qualcomm sa8195p firmware | ||
Qualcomm sa8195p | ||
All of | ||
qualcomm sa8255p firmware | ||
qualcomm sa8255p | ||
All of | ||
qualcomm sa8295p firmware | ||
qualcomm sa8295p | ||
All of | ||
Qualcomm sa8540p firmware | ||
Qualcomm sa8540p | ||
All of | ||
qualcomm sa8620p firmware | ||
qualcomm sa8620p | ||
All of | ||
qualcomm sa8650p firmware | ||
qualcomm sa8650p | ||
All of | ||
qualcomm sa8770p firmware | ||
qualcomm sa8770p | ||
All of | ||
qualcomm sa8775p firmware | ||
qualcomm sa8775p | ||
All of | ||
qualcomm sa9000p firmware | ||
qualcomm sa9000p | ||
All of | ||
Qualcomm Snapdragon 820 Automotive Platform Firmware | ||
Qualcomm Snapdragon 820 Automotive Platform Firmware | ||
All of | ||
qualcomm srv1h firmware | ||
qualcomm srv1h | ||
All of | ||
qualcomm srv1l firmware | ||
qualcomm srv1l | ||
All of | ||
qualcomm srv1m firmware | ||
qualcomm srv1m |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-45555 has been classified as a high-severity vulnerability due to the potential for unauthorized program injection.
CVE-2024-45555 allows attackers to bypass boot verification, enabling them to boot tampered IFS2 system images.
CVE-2024-45555 affects various Qualcomm firmware versions including MSM8996AU, QAM8255P, QAM8295P, and several others.
Addressing CVE-2024-45555 requires updating the affected Qualcomm firmware to the latest security release that addresses this vulnerability.
Yes, CVE-2024-45555 could potentially lead to data breaches by allowing the execution of unauthorized code on vulnerable devices.