CVE-2024-33066

CRITICAL
Published Oct 7, 2024 Modified Oct 16, 2024 CWE-20

Description

Memory corruption while redirecting log file to any file location with any file name.

CVSS v3.1 Score

9.8
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weakness Type (CWE)

CWE-20 Improper Input Validation

Affected Products

Vendor Product
qualcomm snapdragon_x65_5g_modem-rf_system_firmware
qualcomm snapdragon_x65_5g_modem-rf_system
qualcomm sdx65m_firmware
qualcomm sdx65m
qualcomm sdx55_firmware
qualcomm sdx55
qualcomm qxm8083_firmware
qualcomm qxm8083
qualcomm qcn9274_firmware
qualcomm qcn9274
qualcomm qcn9160_firmware
qualcomm qcn9160
qualcomm qcn9100_firmware
qualcomm qcn9100
qualcomm qcn9074_firmware
qualcomm qcn9074
qualcomm qcn9072_firmware
qualcomm qcn9072
qualcomm qcn9070_firmware
qualcomm qcn9070
qualcomm qcn9024_firmware
qualcomm qcn9024
qualcomm qcn9022_firmware
qualcomm qcn9022
qualcomm qcn9000_firmware
qualcomm qcn9000
qualcomm qcn6432_firmware
qualcomm qcn6432
qualcomm qcn6422_firmware
qualcomm qcn6422
qualcomm qcn6412_firmware
qualcomm qcn6412
qualcomm qcn6402_firmware
qualcomm qcn6402
qualcomm qcn6132_firmware
qualcomm qcn6132
qualcomm qcn6122_firmware
qualcomm qcn6122
qualcomm qcn6112_firmware
qualcomm qcn6112
qualcomm qcn6024_firmware
qualcomm qcn6024
qualcomm qcn6023_firmware
qualcomm qcn6023
qualcomm qcn5164_firmware
qualcomm qcn5164
qualcomm qcn5154_firmware
qualcomm qcn5154
qualcomm qcn5152_firmware
qualcomm qcn5152
qualcomm qcn5124_firmware
qualcomm qcn5124
qualcomm qcn5122_firmware
qualcomm qcn5122
qualcomm qcn5052_firmware
qualcomm qcn5052
qualcomm qcn5024_firmware
qualcomm qcn5024
qualcomm qcn5022_firmware
qualcomm qcn5022
qualcomm qcf8001_firmware
qualcomm qcf8001
qualcomm qcf8000_firmware
qualcomm qcf8000
qualcomm qca9889_firmware
qualcomm qca9889
qualcomm qca9888_firmware
qualcomm qca9888
qualcomm qca8386_firmware
qualcomm qca8386
qualcomm qca8085_firmware
qualcomm qca8085
qualcomm qca8084_firmware
qualcomm qca8084
qualcomm qca8082_firmware
qualcomm qca8082
qualcomm qca8081_firmware
qualcomm qca8081
qualcomm qca8075_firmware
qualcomm qca8075
qualcomm qca4024_firmware
qualcomm qca4024
qualcomm ipq9574_firmware
qualcomm ipq9574
qualcomm ipq9554_firmware
qualcomm ipq9554
qualcomm ipq9008_firmware
qualcomm ipq9008
qualcomm ipq8174_firmware
qualcomm ipq8174
qualcomm ipq8173_firmware
qualcomm ipq8173
qualcomm ipq8078a_firmware
qualcomm ipq8078a
qualcomm ipq8078_firmware
qualcomm ipq8078
qualcomm ipq8076a_firmware
qualcomm ipq8076a
qualcomm ipq8076_firmware
qualcomm ipq8076
qualcomm ipq8074a_firmware
qualcomm ipq8074a
qualcomm ipq8072a_firmware
qualcomm ipq8072a
qualcomm ipq8071a_firmware
qualcomm ipq8071a
qualcomm ipq8070a_firmware
qualcomm ipq8070a
qualcomm ipq6028_firmware
qualcomm ipq6028
qualcomm ipq6018_firmware
qualcomm ipq6018
qualcomm ipq6010_firmware
qualcomm ipq6010
qualcomm ipq6000_firmware
qualcomm ipq6000
qualcomm ipq5332_firmware
qualcomm ipq5332
qualcomm ipq5312_firmware
qualcomm ipq5312
qualcomm ipq5302_firmware
qualcomm ipq5302
qualcomm ipq5300_firmware
qualcomm ipq5300
qualcomm ipq5028_firmware
qualcomm ipq5028
qualcomm ipq5010_firmware
qualcomm ipq5010
qualcomm immersive_home_326_platform_firmware
qualcomm immersive_home_326_platform
qualcomm immersive_home_3210_platform_firmware
qualcomm immersive_home_3210_platform
qualcomm immersive_home_318_platform_firmware
qualcomm immersive_home_318_platform
qualcomm immersive_home_316_platform_firmware
qualcomm immersive_home_316_platform
qualcomm immersive_home_216_platform_firmware
qualcomm immersive_home_216_platform
qualcomm immersive_home_214_platform_firmware
qualcomm immersive_home_214_platform
qualcomm csr8811_firmware
qualcomm csr8811

References

Frequently Asked Questions

What is CVE-2024-33066? +
Memory corruption while redirecting log file to any file location with any file name. It has a CVSS v3.1 base score of 9.8 (CRITICAL).
How severe is CVE-2024-33066? +
CVE-2024-33066 has a CVSS v3.1 score of 9.8 out of 10, rated CRITICAL. This is a critical vulnerability that should be patched immediately.
What products are affected by CVE-2024-33066? +
CVE-2024-33066 affects products from qualcomm, specifically: csr8811, csr8811_firmware, immersive_home_214_platform, immersive_home_214_platform_firmware, immersive_home_216_platform, immersive_home_216_platform_firmware, immersive_home_316_platform, immersive_home_316_platform_firmware, immersive_home_318_platform, immersive_home_318_platform_firmware, immersive_home_3210_platform, immersive_home_3210_platform_firmware, immersive_home_326_platform, immersive_home_326_platform_firmware, ipq5010, ipq5010_firmware, ipq5028, ipq5028_firmware, ipq5300, ipq5300_firmware, ipq5302, ipq5302_firmware, ipq5312, ipq5312_firmware, ipq5332, ipq5332_firmware, ipq6000, ipq6000_firmware, ipq6010, ipq6010_firmware, ipq6018, ipq6018_firmware, ipq6028, ipq6028_firmware, ipq8070a, ipq8070a_firmware, ipq8071a, ipq8071a_firmware, ipq8072a, ipq8072a_firmware, ipq8074a, ipq8074a_firmware, ipq8076, ipq8076_firmware, ipq8076a, ipq8076a_firmware, ipq8078, ipq8078_firmware, ipq8078a, ipq8078a_firmware, ipq8173, ipq8173_firmware, ipq8174, ipq8174_firmware, ipq9008, ipq9008_firmware, ipq9554, ipq9554_firmware, ipq9574, ipq9574_firmware, qca4024, qca4024_firmware, qca8075, qca8075_firmware, qca8081, qca8081_firmware, qca8082, qca8082_firmware, qca8084, qca8084_firmware, qca8085, qca8085_firmware, qca8386, qca8386_firmware, qca9888, qca9888_firmware, qca9889, qca9889_firmware, qcf8000, qcf8000_firmware, qcf8001, qcf8001_firmware, qcn5022, qcn5022_firmware, qcn5024, qcn5024_firmware, qcn5052, qcn5052_firmware, qcn5122, qcn5122_firmware, qcn5124, qcn5124_firmware, qcn5152, qcn5152_firmware, qcn5154, qcn5154_firmware, qcn5164, qcn5164_firmware, qcn6023, qcn6023_firmware, qcn6024, qcn6024_firmware, qcn6112, qcn6112_firmware, qcn6122, qcn6122_firmware, qcn6132, qcn6132_firmware, qcn6402, qcn6402_firmware, qcn6412, qcn6412_firmware, qcn6422, qcn6422_firmware, qcn6432, qcn6432_firmware, qcn9000, qcn9000_firmware, qcn9022, qcn9022_firmware, qcn9024, qcn9024_firmware, qcn9070, qcn9070_firmware, qcn9072, qcn9072_firmware, qcn9074, qcn9074_firmware, qcn9100, qcn9100_firmware, qcn9160, qcn9160_firmware, qcn9274, qcn9274_firmware, qxm8083, qxm8083_firmware, sdx55, sdx55_firmware, sdx65m, sdx65m_firmware, snapdragon_x65_5g_modem-rf_system, snapdragon_x65_5g_modem-rf_system_firmware. Check the affected products table above for specific version ranges.
How do I check if I'm vulnerable to CVE-2024-33066? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.

Related Vulnerabilities

Don't wait for an exploit

Scan your website for vulnerabilities like CVE-2024-33066 — free, no signup required.

Start Free Scan