Memory Corruption Vulnerability in Qualcomm Products
CVE-2024-23376
6.7MEDIUM
Summary
A memory corruption vulnerability exists in Qualcomm products, specifically related to the handling of a persist buffer command packet sent from user-space to kernel space through the IOCTL call. This flaw can potentially allow attackers to exploit improper memory handling, leading to various security implications. Organizations using affected Qualcomm products should apply necessary mitigations to safeguard their systems and ensure data integrity.
References
CVSS V3.1
Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published