Linux Kernel Vulnerability in Qualcomm SCM Leading to Potential Data Exposure
CVE-2024-58084

5.5MEDIUM

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 March 2025

What is CVE-2024-58084?

A vulnerability in the Linux kernel's Qualcomm SCM implementation may lead to improper handling of memory barriers, potentially allowing for the fetching of stale values of the '__scm' variable. This can occur due to missing read barriers that are essential for ensuring data integrity in concurrent contexts. As a result, there is a risk of dereferencing a NULL pointer, which could compromise the stability and security of the system. The issue has since been addressed, but systems running affected versions prior to the fix remain at risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Linux 449d0d84bcd8246b508d07995326d13c54488b8c

Linux 449d0d84bcd8246b508d07995326d13c54488b8c

Linux 449d0d84bcd8246b508d07995326d13c54488b8c

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.