CVE-2024-21455
HIGHDescription
Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver.
Is your site exposed to CVE-2024-21455?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| qualcomm | video_collaboration_vc1_platform_firmware |
| qualcomm | video_collaboration_vc1_platform |
| qualcomm | wsa8815_firmware |
| qualcomm | wsa8815 |
| qualcomm | wsa8810_firmware |
| qualcomm | wsa8810 |
| qualcomm | wcn3980_firmware |
| qualcomm | wcn3980 |
| qualcomm | wcn3950_firmware |
| qualcomm | wcn3950 |
| qualcomm | wcd9375_firmware |
| qualcomm | wcd9375 |
| qualcomm | wcd9370_firmware |
| qualcomm | wcd9370 |
| qualcomm | snapdragon_auto_5g_modem-rf_gen_2_firmware |
| qualcomm | snapdragon_auto_5g_modem-rf_gen_2 |
| qualcomm | snapdragon_685_4g_mobile_platform_\(sm6225-ad\)_firmware |
| qualcomm | snapdragon_685_4g_mobile_platform_\(sm6225-ad\) |
| qualcomm | snapdragon_680_4g_mobile_platform_firmware |
| qualcomm | snapdragon_680_4g_mobile_platform |
| qualcomm | sg4150p_firmware |
| qualcomm | sg4150p |
| qualcomm | sa8295p_firmware |
| qualcomm | sa8295p |
| qualcomm | qcs6125_firmware |
| qualcomm | qcs6125 |
| qualcomm | qcm6125_firmware |
| qualcomm | qcm6125 |
| qualcomm | qca6698aq_firmware |
| qualcomm | qca6698aq |
| qualcomm | qca6696_firmware |
| qualcomm | qca6696 |
| qualcomm | qca6688aq_firmware |
| qualcomm | qca6688aq |
| qualcomm | qca6595_firmware |
| qualcomm | qca6595 |
| qualcomm | qca6584au_firmware |
| qualcomm | qca6584au |
| qualcomm | qam8295p_firmware |
| qualcomm | qam8295p |
References
Frequently Asked Questions
What is CVE-2024-21455? +
How severe is CVE-2024-21455? +
What products are affected by CVE-2024-21455? +
How do I check if I'm vulnerable to CVE-2024-21455? +
Related Vulnerabilities
Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local …
Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: User Applications may allow …
An untrusted pointer dereference in the ionic cloud driver for VMWare ESXi could allow an attacker with an unprivileged VM …
Untrusted pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.This issue affects Connext Professional: from 7.4.0 before …
Untrusted Pointer Dereference vulnerability in RTI Connext Professional (Core Libraries) allows Pointer Manipulation.This issue affects Connext Professional: from 7.4.0 before …