PT-2024-6666 · Qualcomm · Qualcomm Multiple Chipsets

Published

2024-07-29

·

Updated

2026-05-17

·

CVE-2024-43047

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Qualcomm Multiple Chipsets (affected versions not specified)
Description Memory corruption occurs while maintaining memory maps of High-Level Operating System (HLOS) memory. This issue is a use-after-free flaw within the Digital Signal Processor (DSP) service of the chipset firmware. The flaw has been actively exploited in the wild by intelligence services and spyware providers, specifically targeting Serbian activists.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

LPE

Improper Privilege Management

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2024-07868
BDU:2024-09108
CVE-2024-43047

Affected Products

Qualcomm Multiple Chipsets