CVE-2024-43049

Memory corruption while invoking IOCTL calls from user space to set generic private command inside WLAN driver.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6700_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6700:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:qcc2073_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcc2073:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:qcc2076_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcc2076:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:sc8380xp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sc8380xp:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_429_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_429_mobile_platform:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_7c\+_gen_3_compute_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_7c\+_gen_3_compute:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_8cx_gen_3_compute_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8cx_gen_3_compute_platform:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*

History

12 Dec 2024, 15:28

Type Values Removed Values Added
First Time Qualcomm snapdragon 429 Mobile Platform
Qualcomm fastconnect 6900
Qualcomm wsa8835
Qualcomm sc8380xp
Qualcomm sc8380xp Firmware
Qualcomm snapdragon 7c\+ Gen 3 Compute
Qualcomm snapdragon 429 Mobile Platform Firmware
Qualcomm wcn3620
Qualcomm sdm429w
Qualcomm wsa8845 Firmware
Qualcomm wcd9380 Firmware
Qualcomm wsa8835 Firmware
Qualcomm qcc2076 Firmware
Qualcomm wsa8845
Qualcomm fastconnect 6900 Firmware
Qualcomm wsa8840 Firmware
Qualcomm wsa8845h Firmware
Qualcomm qcc2073 Firmware
Qualcomm fastconnect 7800 Firmware
Qualcomm wcd9385 Firmware
Qualcomm wsa8845h
Qualcomm wcn3620 Firmware
Qualcomm qcc2073
Qualcomm qcc2076
Qualcomm snapdragon 8cx Gen 3 Compute Platform
Qualcomm fastconnect 6700
Qualcomm sdm429w Firmware
Qualcomm wsa8840
Qualcomm wcn3660b Firmware
Qualcomm fastconnect 7800
Qualcomm wsa8830
Qualcomm wcd9385
Qualcomm snapdragon 7c\+ Gen 3 Compute Firmware
Qualcomm wsa8830 Firmware
Qualcomm
Qualcomm snapdragon 8cx Gen 3 Compute Platform Firmware
Qualcomm wcd9380
Qualcomm wcn3660b
Qualcomm fastconnect 6700 Firmware
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/december-2024-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/december-2024-bulletin.html - Vendor Advisory
Summary
  • (es) Corrupción de memoria al invocar llamadas IOCTL desde el espacio del usuario para establecer un comando privado genérico dentro del controlador WLAN.
CPE cpe:2.3:h:qualcomm:qcc2073:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_7c\+_gen_3_compute:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8cx_gen_3_compute_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sc8380xp:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_429_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcc2076_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sc8380xp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcc2073_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_7c\+_gen_3_compute_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_8cx_gen_3_compute_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_429_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6700:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcc2076:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6700_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
CWE CWE-787

02 Dec 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-02 11:15

Updated : 2024-12-12 15:28


NVD link : CVE-2024-43049

Mitre link : CVE-2024-43049

CVE.ORG link : CVE-2024-43049


JSON object : View

Products Affected

qualcomm

  • wsa8830_firmware
  • wsa8845h_firmware
  • wsa8845
  • snapdragon_429_mobile_platform_firmware
  • wcd9385
  • wsa8840_firmware
  • fastconnect_6700
  • sdm429w
  • fastconnect_7800_firmware
  • wcn3660b_firmware
  • snapdragon_8cx_gen_3_compute_platform_firmware
  • wsa8845h
  • fastconnect_6700_firmware
  • sc8380xp
  • fastconnect_6900_firmware
  • wsa8835_firmware
  • qcc2076
  • wcd9380_firmware
  • wcd9385_firmware
  • sdm429w_firmware
  • wcn3620
  • wsa8830
  • wcn3620_firmware
  • wcd9380
  • snapdragon_8cx_gen_3_compute_platform
  • fastconnect_6900
  • wcn3660b
  • snapdragon_429_mobile_platform
  • qcc2073
  • qcc2076_firmware
  • snapdragon_7c\+_gen_3_compute
  • wsa8845_firmware
  • wsa8840
  • sc8380xp_firmware
  • qcc2073_firmware
  • wsa8835
  • fastconnect_7800
  • snapdragon_7c\+_gen_3_compute_firmware
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

CWE-787

Out-of-bounds Write