CVE-2024-23386

memory corruption when WiFi display APIs are invoked with large random inputs.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_8_gen_1_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_1_mobile_platform:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_429_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_429_mobile_platform:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*

History

07 Nov 2024, 19:54

Type Values Removed Values Added
First Time Qualcomm fastconnect 6900 Firmware
Qualcomm snapdragon 429 Mobile Platform
Qualcomm fastconnect 6900
Qualcomm wsa8835
Qualcomm fastconnect 7800 Firmware
Qualcomm wcn3620 Firmware
Qualcomm snapdragon 8 Gen 1 Mobile Platform
Qualcomm snapdragon 8 Gen 1 Mobile Platform Firmware
Qualcomm sdm429w Firmware
Qualcomm snapdragon 429 Mobile Platform Firmware
Qualcomm wcn3660b Firmware
Qualcomm fastconnect 7800
Qualcomm wsa8830
Qualcomm wsa8830 Firmware
Qualcomm wcn3620
Qualcomm wcn3660b
Qualcomm sdm429w
Qualcomm
Qualcomm wcd9380
Qualcomm wcd9380 Firmware
Qualcomm wsa8835 Firmware
Summary
  • (es) Corrupción de memoria cuando se invocan las API de visualización WiFi con entradas aleatorias grandes.
CPE cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_429_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_8_gen_1_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_1_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_429_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2024-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2024-bulletin.html - Patch, Vendor Advisory
CWE NVD-CWE-noinfo

04 Nov 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-04 10:15

Updated : 2024-11-07 19:54


NVD link : CVE-2024-23386

Mitre link : CVE-2024-23386

CVE.ORG link : CVE-2024-23386


JSON object : View

Products Affected

qualcomm

  • wsa8830_firmware
  • snapdragon_429_mobile_platform_firmware
  • sdm429w
  • fastconnect_7800_firmware
  • wcn3660b_firmware
  • fastconnect_6900_firmware
  • wsa8835_firmware
  • wcd9380_firmware
  • wcn3620
  • sdm429w_firmware
  • wsa8830
  • wcn3620_firmware
  • snapdragon_8_gen_1_mobile_platform_firmware
  • wcd9380
  • wcn3660b
  • fastconnect_6900
  • snapdragon_429_mobile_platform
  • snapdragon_8_gen_1_mobile_platform
  • wsa8835
  • fastconnect_7800
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation