We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2024-49848

Use After Free in DSP Service



Description

Memory corruption while processing multiple IOCTL calls from HLOS to DSP.

Reserved 2024-10-20 | Published 2025-04-07 | Updated 2025-04-08 | Assigner qualcomm


MEDIUM: 6.7CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Problem types

CWE-416 Use After Free

Product status

Default status
unaffected

AR8035
affected

FastConnect 6200
affected

FastConnect 6700
affected

FastConnect 6900
affected

FastConnect 7800
affected

QAM8255P
affected

QAM8295P
affected

QAM8620P
affected

QAM8650P
affected

QAM8775P
affected

QAMSRV1H
affected

QAMSRV1M
affected

QCA6174A
affected

QCA6391
affected

QCA6574
affected

QCA6574A
affected

QCA6574AU
affected

QCA6584AU
affected

QCA6595
affected

QCA6595AU
affected

QCA6678AQ
affected

QCA6688AQ
affected

QCA6696
affected

QCA6698AQ
affected

QCA6797AQ
affected

QCA8081
affected

QCA8337
affected

QCC710
affected

QCM4325
affected

QCM4490
affected

QCM6125
affected

QCM8550
affected

QCN6224
affected

QCN6274
affected

QCN9011
affected

QCN9012
affected

QCS4490
affected

QCS6125
affected

QCS7230
affected

QCS8250
affected

QCS8550
affected

QDU1000
affected

QDU1010
affected

QDU1110
affected

QDU1210
affected

QDX1010
affected

QDX1011
affected

QEP8111
affected

QFW7114
affected

QFW7124
affected

QMP1000
affected

QRU1032
affected

QRU1052
affected

QRU1062
affected

Qualcomm Video Collaboration VC1 Platform
affected

Qualcomm Video Collaboration VC5 Platform
affected

SA6155P
affected

SA7255P
affected

SA7775P
affected

SA8155P
affected

SA8195P
affected

SA8255P
affected

SA8295P
affected

SA8620P
affected

SA8650P
affected

SA8770P
affected

SA8775P
affected

SA9000P
affected

SD 8 Gen1 5G
affected

SG4150P
affected

SG8275P
affected

SM4635
affected

SM6650
affected

SM7635
affected

SM7675
affected

SM7675P
affected

SM8550P
affected

SM8635
affected

SM8635P
affected

SM8650Q
affected

SM8735
affected

SM8750
affected

SM8750P
affected

Snapdragon 4 Gen 1 Mobile Platform
affected

Snapdragon 4 Gen 2 Mobile Platform
affected

Snapdragon 460 Mobile Platform
affected

Snapdragon 480 5G Mobile Platform
affected

Snapdragon 480+ 5G Mobile Platform (SM4350-AC)
affected

Snapdragon 662 Mobile Platform
affected

Snapdragon 680 4G Mobile Platform
affected

Snapdragon 685 4G Mobile Platform (SM6225-AD)
affected

Snapdragon 695 5G Mobile Platform
affected

Snapdragon 8 Gen 1 Mobile Platform
affected

Snapdragon 8 Gen 2 Mobile Platform
affected

Snapdragon 8 Gen 3 Mobile Platform
affected

Snapdragon 8+ Gen 1 Mobile Platform
affected

Snapdragon 8+ Gen 2 Mobile Platform
affected

Snapdragon AR1 Gen 1 Platform
affected

Snapdragon AR1 Gen 1 Platform "Luna1"
affected

Snapdragon AR2 Gen 1 Platform
affected

Snapdragon Auto 5G Modem-RF Gen 2
affected

Snapdragon W5+ Gen 1 Wearable Platform
affected

Snapdragon X35 5G Modem-RF System
affected

Snapdragon X72 5G Modem-RF System
affected

Snapdragon X75 5G Modem-RF System
affected

SRV1H
affected

SRV1L
affected

SRV1M
affected

SSG2115P
affected

SSG2125P
affected

SW5100
affected

SW5100P
affected

SXR1230P
affected

SXR2230P
affected

SXR2250P
affected

TalynPlus
affected

Vision Intelligence 400 Platform
affected

WCD9335
affected

WCD9340
affected

WCD9341
affected

WCD9370
affected

WCD9375
affected

WCD9378
affected

WCD9380
affected

WCD9385
affected

WCD9390
affected

WCD9395
affected

WCN3950
affected

WCN3980
affected

WCN3988
affected

WCN3990
affected

WCN6450
affected

WCN6650
affected

WCN6755
affected

WCN7750
affected

WCN7860
affected

WCN7861
affected

WCN7880
affected

WCN7881
affected

WSA8810
affected

WSA8815
affected

WSA8830
affected

WSA8832
affected

WSA8835
affected

WSA8840
affected

WSA8845
affected

WSA8845H
affected

References

docs.qualcomm.com/...curitybulletin/april-2025-bulletin.html

cve.org (CVE-2024-49848)

nvd.nist.gov (CVE-2024-49848)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2024-49848

Support options

Helpdesk Chat, Email, Knowledgebase