CVE-2024-45555
HIGHDescription
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
Is your site exposed to CVE-2024-45555?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| qualcomm | msm8996au_firmware |
| qualcomm | msm8996au |
| qualcomm | qam8255p_firmware |
| qualcomm | qam8255p |
| qualcomm | qam8295p_firmware |
| qualcomm | qam8295p |
| qualcomm | qam8620p_firmware |
| qualcomm | qam8620p |
| qualcomm | qam8650p_firmware |
| qualcomm | qam8650p |
| qualcomm | qam8775p_firmware |
| qualcomm | qam8775p |
| qualcomm | qamsrv1h_firmware |
| qualcomm | qamsrv1h |
| qualcomm | qamsrv1m_firmware |
| qualcomm | qamsrv1m |
| qualcomm | qca6564a_firmware |
| qualcomm | qca6564a |
| qualcomm | qca6564au_firmware |
| qualcomm | qca6564au |
| qualcomm | qca6574a_firmware |
| qualcomm | qca6574a |
| qualcomm | qca6574au_firmware |
| qualcomm | qca6574au |
| qualcomm | qca6584au_firmware |
| qualcomm | qca6584au |
| qualcomm | qca6595_firmware |
| qualcomm | qca6595 |
| qualcomm | qca6595au_firmware |
| qualcomm | qca6595au |
| qualcomm | qca6688aq_firmware |
| qualcomm | qca6688aq |
| qualcomm | qca6696_firmware |
| qualcomm | qca6696 |
| qualcomm | qca6698aq_firmware |
| qualcomm | qca6698aq |
| qualcomm | sa6145p_firmware |
| qualcomm | sa6145p |
| qualcomm | sa6150p_firmware |
| qualcomm | sa6150p |
| qualcomm | sa6155_firmware |
| qualcomm | sa6155 |
| qualcomm | sa6155p_firmware |
| qualcomm | sa6155p |
| qualcomm | sa7255p_firmware |
| qualcomm | sa7255p |
| qualcomm | sa7775p_firmware |
| qualcomm | sa7775p |
| qualcomm | sa8145p_firmware |
| qualcomm | sa8145p |
| qualcomm | sa8150p_firmware |
| qualcomm | sa8150p |
| qualcomm | sa8155_firmware |
| qualcomm | sa8155 |
| qualcomm | sa8155p_firmware |
| qualcomm | sa8155p |
| qualcomm | sa8195p_firmware |
| qualcomm | sa8195p |
| qualcomm | sa8255p_firmware |
| qualcomm | sa8255p |
| qualcomm | sa8295p_firmware |
| qualcomm | sa8295p |
| qualcomm | sa8540p_firmware |
| qualcomm | sa8540p |
| qualcomm | sa8620p_firmware |
| qualcomm | sa8620p |
| qualcomm | sa8650p_firmware |
| qualcomm | sa8650p |
| qualcomm | sa8770p_firmware |
| qualcomm | sa8770p |
| qualcomm | sa8775p_firmware |
| qualcomm | sa8775p |
| qualcomm | sa9000p_firmware |
| qualcomm | sa9000p |
| qualcomm | snapdragon_820_automotive_firmware |
| qualcomm | snapdragon_820_automotive |
| qualcomm | srv1h_firmware |
| qualcomm | srv1h |
| qualcomm | srv1l_firmware |
| qualcomm | srv1l |
| qualcomm | srv1m_firmware |
| qualcomm | srv1m |
References
Frequently Asked Questions
What is CVE-2024-45555? +
How severe is CVE-2024-45555? +
What products are affected by CVE-2024-45555? +
How do I check if I'm vulnerable to CVE-2024-45555? +
Related Vulnerabilities
LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document reused the …
LibreOffice can import presentations in the legacy binary PPT format. A stack buffer overflow existed when importing a colour-replacement record. …
A heap use-after-free existed when importing the blank-width characters of an ODF number format. A position value read from the …
LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a …
The method "sock_recvfrom_into()" of "asyncio.ProacterEventLoop" (Windows only) was missing a boundary check for the data buffer when using nbytes parameter. …
editorconfig-core-c is an EditorConfig core library for use by plugins supporting EditorConfig parsing. Versions up to and including 0.12.10 have …