PT-2025-2867 · Qualcomm · Snapdragon+22

Published

2024-11-04

·

Updated

2025-02-03

·

CVE-2024-49837

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue involves memory corruption that occurs when reading CPU state data during the suspension of a guest virtual machine. This corruption happens while the system is attempting to access or manage the state of the CPU, leading to potential instability or security risks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Validation of Array Index

Weakness Enumeration

Related Identifiers

BDU:2025-05520
CVE-2024-49837

Affected Products

Snapdragon
Qam8255P Firmware
Qam8295P Firmware
Qam8620P Firmware
Qam8650P Firmware
Qam8775P Firmware
Qamsrv1H Firmware
Qca6574Au Firmware
Qca6595Au Firmware
Qca6688Aq Firmware
Qca6696 Firmware
Qca6698Aq Firmware
Sa7255P Firmware
Sa7775P Firmware
Sa8255P Firmware
Sa8295P Firmware
Sa8540P Firmware
Sa8620P Firmware
Sa8650P Firmware
Sa8770P Firmware
Sa8775P Firmware
Sa9000P Firmware
Srv1H Firmware