CVE-2024-49843
HIGHDescription
Memory corruption while processing IOCTL from user space to handle GPU AHB bus error.
Is your site exposed to CVE-2024-49843?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| qualcomm | fastconnect_6200_firmware |
| qualcomm | fastconnect_6200 |
| qualcomm | fastconnect_7800_firmware |
| qualcomm | fastconnect_7800 |
| qualcomm | qca6391_firmware |
| qualcomm | qca6391 |
| qualcomm | qcm6125_firmware |
| qualcomm | qcm6125 |
| qualcomm | qcs6125_firmware |
| qualcomm | qcs6125 |
| qualcomm | qcs7230_firmware |
| qualcomm | qcs7230 |
| qualcomm | qcs8250_firmware |
| qualcomm | qcs8250 |
| qualcomm | video_collaboration_vc1_platform_firmware |
| qualcomm | video_collaboration_vc1_platform |
| qualcomm | video_collaboration_vc5_platform_firmware |
| qualcomm | video_collaboration_vc5_platform |
| qualcomm | sm4635_firmware |
| qualcomm | sm4635 |
| qualcomm | sm6650_firmware |
| qualcomm | sm6650 |
| qualcomm | sm7635_firmware |
| qualcomm | sm7635 |
| qualcomm | sm7675_firmware |
| qualcomm | sm7675 |
| qualcomm | sm7675p_firmware |
| qualcomm | sm7675p |
| qualcomm | sm8635_firmware |
| qualcomm | sm8635 |
| qualcomm | sm8635p_firmware |
| qualcomm | sm8635p |
| qualcomm | sm8750_firmware |
| qualcomm | sm8750 |
| qualcomm | sm8750p_firmware |
| qualcomm | sm8750p |
| qualcomm | snapdragon_4_gen_1_mobile_firmware |
| qualcomm | snapdragon_4_gen_1_mobile |
| qualcomm | snapdragon_480_5g_mobile_firmware |
| qualcomm | snapdragon_480_5g_mobile |
| qualcomm | snapdragon_480\+_5g_mobile_firmware |
| qualcomm | snapdragon_480\+_5g_mobile |
| qualcomm | snapdragon_695_5g_mobile_firmware |
| qualcomm | snapdragon_695_5g_mobile |
| qualcomm | snapdragon_8_gen_3_mobile_firmware |
| qualcomm | snapdragon_8_gen_3_mobile |
| qualcomm | snapdragon_w5\+_gen_1_wearable_firmware |
| qualcomm | snapdragon_w5\+_gen_1_wearable |
| qualcomm | sw5100_firmware |
| qualcomm | sw5100 |
| qualcomm | sw5100p_firmware |
| qualcomm | sw5100p |
| qualcomm | sxr2330p_firmware |
| qualcomm | sxr2330p |
| qualcomm | wcd9370_firmware |
| qualcomm | wcd9370 |
| qualcomm | wcd9375_firmware |
| qualcomm | wcd9375 |
| qualcomm | wcd9378_firmware |
| qualcomm | wcd9378 |
| qualcomm | wcd9380_firmware |
| qualcomm | wcd9380 |
| qualcomm | wcd9385_firmware |
| qualcomm | wcd9385 |
| qualcomm | wcd9390_firmware |
| qualcomm | wcd9390 |
| qualcomm | wcd9395_firmware |
| qualcomm | wcd9395 |
| qualcomm | wcn3950_firmware |
| qualcomm | wcn3950 |
| qualcomm | wcn3980_firmware |
| qualcomm | wcn3980 |
| qualcomm | wcn3988_firmware |
| qualcomm | wcn3988 |
| qualcomm | wcn6450_firmware |
| qualcomm | wcn6450 |
| qualcomm | wcn6650_firmware |
| qualcomm | wcn6650 |
| qualcomm | wcn6755_firmware |
| qualcomm | wcn6755 |
| qualcomm | wcn7860_firmware |
| qualcomm | wcn7860 |
| qualcomm | wcn7861_firmware |
| qualcomm | wcn7861 |
| qualcomm | wcn7880_firmware |
| qualcomm | wcn7880 |
| qualcomm | wcn7881_firmware |
| qualcomm | wcn7881 |
| qualcomm | wsa8810_firmware |
| qualcomm | wsa8810 |
| qualcomm | wsa8815_firmware |
| qualcomm | wsa8815 |
| qualcomm | wsa8830_firmware |
| qualcomm | wsa8830 |
| qualcomm | wsa8832_firmware |
| qualcomm | wsa8832 |
| qualcomm | wsa8835_firmware |
| qualcomm | wsa8835 |
| qualcomm | wsa8840_firmware |
| qualcomm | wsa8840 |
| qualcomm | wsa8845_firmware |
| qualcomm | wsa8845 |
| qualcomm | wsa8845h_firmware |
| qualcomm | wsa8845h |
References
Frequently Asked Questions
What is CVE-2024-49843? +
How severe is CVE-2024-49843? +
What products are affected by CVE-2024-49843? +
How do I check if I'm vulnerable to CVE-2024-49843? +
Related Vulnerabilities
A weakness in Automated Logic and Carrier i-Vu Gen5 router on driver version drv_gen5_106-01-2380, allows malformed packets to be sent …
Taiko Alethia is an Ethereum-equivalent, permissionless, based rollup designed to scale Ethereum without compromising its fundamental properties. In 2.3.1 and …
Improper validation in Power Management Firmware (PMFW) may allow an attacker with privileges to pass malformed workload arguments when exporting …
Memory corruption while parsing the ML IE due to invalid frame content.
Vyper is a Pythonic Smart Contract Language for the Ethereum Virtual Machine. Arrays can be keyed by a signed integer, …
FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266_syntax_template.c. This vulnerability allows attackers …