Memory Corruption Vulnerability in Qualcomm Audio Mixer Controls
CVE-2024-49830

6.6MEDIUM

Key Information:

Vendor
Qualcomm
Vendor
CVE Published:
6 May 2025

Summary

A vulnerability has been identified that allows for memory corruption during the processing of IOCTL calls specifically designed to set mixer controls in Qualcomm audio products. This flaw could potentially enable attackers to execute arbitrary code, leading to unintended system behavior. Users are advised to apply the latest security updates to mitigate against potential exploitation.

Affected Version(s)

Snapdragon Snapdragon Auto QCA6574AU

Snapdragon Snapdragon Auto QCA6595AU

Snapdragon Snapdragon Auto QCA6678AQ

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.