PT-2025-2707 · Qualcomm · Snapdragon+33

Published

2025-01-06

·

Updated

2025-01-13

·

CVE-2024-45555

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-45555

Affected Products

Snapdragon
Msm8996Au Firmware
Qam8255P Firmware
Qam8295P Firmware
Qam8620P Firmware
Qam8650P Firmware
Qam8775P Firmware
Qamsrv1H Firmware
Qca6564Au Firmware
Qca6574Au Firmware
Qca6584Au Firmware
Qca6595Au Firmware
Qca6688Aq Firmware
Qca6696 Firmware
Qca6698Aq Firmware
Sa6145P Firmware
Sa6150P Firmware
Sa6155P Firmware
Sa7255P Firmware
Sa7775P Firmware
Sa8145P Firmware
Sa8150P Firmware
Sa8155P Firmware
Sa8195P Firmware
Sa8255P Firmware
Sa8295P Firmware
Sa8540P Firmware
Sa8620P Firmware
Sa8650P Firmware
Sa8770P Firmware
Sa8775P Firmware
Sa9000P Firmware
Snapdragon 820 Automotive Firmware
Srv1H Firmware