CVE-2024-23386

memory corruption when WiFi display APIs are invoked with large random inputs.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_8_gen_1_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_1_mobile_platform:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_429_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_429_mobile_platform:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*

History

07 Nov 2024, 19:54

Type Values Removed Values Added
CPE cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdm429w:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_8_gen_1_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3620_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8_gen_1_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3620:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sdm429w_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_429_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_429_mobile_platform_firmware:-:*:*:*:*:*:*:*
Summary
  • (es) Corrupción de memoria cuando se invocan las API de visualización WiFi con entradas aleatorias grandes.
CWE NVD-CWE-noinfo
First Time Qualcomm
Qualcomm snapdragon 8 Gen 1 Mobile Platform Firmware
Qualcomm wcn3660b
Qualcomm wsa8835
Qualcomm snapdragon 429 Mobile Platform
Qualcomm fastconnect 7800
Qualcomm snapdragon 429 Mobile Platform Firmware
Qualcomm snapdragon 8 Gen 1 Mobile Platform
Qualcomm wcn3620
Qualcomm wcd9380
Qualcomm wcn3660b Firmware
Qualcomm wcd9380 Firmware
Qualcomm wsa8830
Qualcomm fastconnect 6900
Qualcomm wcn3620 Firmware
Qualcomm sdm429w
Qualcomm fastconnect 6900 Firmware
Qualcomm sdm429w Firmware
Qualcomm wsa8830 Firmware
Qualcomm wsa8835 Firmware
Qualcomm fastconnect 7800 Firmware
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2024-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/november-2024-bulletin.html - Patch, Vendor Advisory

04 Nov 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-04 10:15

Updated : 2024-11-07 19:54


NVD link : CVE-2024-23386

Mitre link : CVE-2024-23386

CVE.ORG link : CVE-2024-23386


JSON object : View

Products Affected

qualcomm

  • snapdragon_429_mobile_platform_firmware
  • wcn3660b
  • wcd9380
  • fastconnect_6900_firmware
  • wcd9380_firmware
  • snapdragon_8_gen_1_mobile_platform
  • snapdragon_8_gen_1_mobile_platform_firmware
  • wsa8830_firmware
  • fastconnect_7800
  • wsa8830
  • sdm429w_firmware
  • wsa8835_firmware
  • wcn3620_firmware
  • wcn3660b_firmware
  • wsa8835
  • snapdragon_429_mobile_platform
  • fastconnect_6900
  • fastconnect_7800_firmware
  • sdm429w
  • wcn3620
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation