Memory Corruption Vulnerability in Qualcomm Hypervisor
CVE-2024-49837

7.8HIGH

Key Information:

Vendor
Qualcomm
Vendor
CVE Published:
3 February 2025

Summary

A memory corruption vulnerability has been identified in the Qualcomm Hypervisor that can occur while reading CPU state data during guest VM suspension. This flaw may lead to potential unauthorized access or modification of data within virtual machines, posing risks to system integrity and security. It is crucial for users and system administrators to update to the latest versions to mitigate this vulnerability.

Affected Version(s)

Snapdragon Snapdragon Auto QAM8255P

Snapdragon Snapdragon Auto QAM8295P

Snapdragon Snapdragon Auto QAM8620P

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.