CVE-2024-45566: Use After Free in Camera Driver
Published May 6, 2025
·Updated
Memory corruption during concurrent buffer access due to modification of the reference count.
Affected Software
46 affected components
All of the following
Qualcomm Fastconnect 6800 Firmware
Qualcomm Fastconnect 6800
All of the following
Qualcomm Fastconnect 6900 Firmware
Qualcomm Fastconnect 6900
All of the following
Qualcomm Fastconnect 7800 Firmware
Qualcomm Fastconnect 7800
All of the following
Qualcomm Qca6391 Firmware
Qualcomm Qca6391
All of the following
Qualcomm Qca6426 Firmware
Qualcomm Qca6426
All of the following
Qualcomm Qca6436 Firmware
Qualcomm Qca6436
All of the following
Qualcomm Sd865 5g Firmware
Qualcomm Sd865 5g
All of the following
QUALCOMM Sdm429w Firmware
QUALCOMM Sdm429w
All of the following
Qualcomm Snapdragon 429 Mobile Firmware
Qualcomm Snapdragon 429 Mobile
All of the following
Qualcomm Snapdragon 8 Gen 1 Mobile Firmware
Qualcomm Snapdragon 8 Gen 1 Mobile
All of the following
Qualcomm Snapdragon 865 5g Mobile Firmware
Qualcomm Snapdragon 865 5g Mobile
All of the following
Qualcomm Snapdragon 865\+ 5g Mobile Firmware
Qualcomm Snapdragon 865\+ 5g Mobile
All of the following
Qualcomm Snapdragon 870 5g Mobile Firmware
Qualcomm Snapdragon 870 5g Mobile
All of the following
Qualcomm Snapdragon X55 5g Modem-rf System Firmware
Qualcomm Snapdragon X55 5g Modem-rf System
All of the following
Qualcomm Snapdragon Xr2 5g Firmware
Qualcomm Snapdragon Xr2 5g
All of the following
Qualcomm Sxr2130 Firmware
Qualcomm Sxr2130
All of the following
Qualcomm Wcd9380 Firmware
Qualcomm Wcd9380
All of the following
Qualcomm Wcn3620 Firmware
Qualcomm Wcn3620
All of the following
Qualcomm Wcn3660b Firmware
Qualcomm Wcn3660b
All of the following
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
All of the following
Qualcomm Wsa8815 Firmware
Qualcomm Wsa8815
All of the following
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
All of the following
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835
Remediation
Event History
May 6, 2025
CVE Published
via MITRE·08:31 AM
Data Sourced
via MITRE·08:31 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-45566?
CVE-2024-45566 is considered a high severity vulnerability due to memory corruption risks during concurrent buffer access.
2
How do I fix CVE-2024-45566?
To fix CVE-2024-45566, update the affected Qualcomm firmware to the latest patched version.
3
Which Qualcomm peripherals are affected by CVE-2024-45566?
CVE-2024-45566 affects various Qualcomm firmware, including FastConnect 6800, 6900, 7800, QCA6391, and several Snapdragon models.
4
What is the potential impact of exploiting CVE-2024-45566?
Exploitation of CVE-2024-45566 could lead to crashes, data corruption, or remote code execution on affected devices.
5
When was CVE-2024-45566 published?
CVE-2024-45566 was published on November 25, 2024.