Memory Corruption Vulnerability in Kernel Could Lead to Race Condition
CVE-2024-33040

7HIGH

Key Information:

Vendor

Qualcomm

Vendor
CVE Published:
2 December 2024

What is CVE-2024-33040?

A memory corruption vulnerability exists in Qualcomm's kernel, where invoking a redundant release command to free a buffer from user space can lead to a race condition. This race condition occurs between the buffer release operation and subsequent access to that same buffer in kernel space, potentially allowing unauthorized access or manipulation of the memory, leading to instability or exploitation of the system. It is essential for users of affected Qualcomm products to apply the latest updates to mitigate potential risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Snapdragon Snapdragon Auto FastConnect 6800

Snapdragon Snapdragon Auto FastConnect 6900

Snapdragon Snapdragon Auto FastConnect 7800

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.