PT-2024-10167 · Qualcomm · Qualcomm Snapdragon Auto

Published

2024-06-16

·

Updated

2024-10-10

·

CVE-2024-38402

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qualcomm Snapdragon Auto and other products (affected versions not specified)
Description The issue is related to memory corruption that occurs when handling an IOCTL call for obtaining group information. This can potentially allow an attacker to execute arbitrary code. The severity of this issue is considered high.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2025-00494
CVE-2024-38402

Affected Products

Qualcomm Snapdragon Auto