// For flags

CVE-2024-33040

Use After Free in Camera Driver

Severity Score

6.7
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Track*
*SSVC
Descriptions

Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.

Puede ocurrir corrupción de memoria al invocar el comando de liberación redundante para liberar un búfer del espacio del usuario como condición de ejecución en el espacio del núcleo entre la liberación del búfer y el acceso al búfer.

*Credits: N/A
CVSS Scores
Attack Vector
Local
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
High
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Attack Vector
Local
Attack Complexity
High
Authentication
Single
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:Track*
Exploitation
None
Automatable
No
Tech. Impact
Total
* Organization's Worst-case Scenario
Timeline
  • 2024-04-23 CVE Reserved
  • 2024-12-02 CVE Published
  • 2024-12-03 CVE Updated
  • 2024-12-03 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-416: Use After Free
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Qualcomm
Search vendor "Qualcomm"
Fastconnect 6800 Firmware
Search vendor "Qualcomm" for product "Fastconnect 6800 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Fastconnect 6900 Firmware
Search vendor "Qualcomm" for product "Fastconnect 6900 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Fastconnect 7800 Firmware
Search vendor "Qualcomm" for product "Fastconnect 7800 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Qam8255p Firmware
Search vendor "Qualcomm" for product "Qam8255p Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Qca6391 Firmware
Search vendor "Qualcomm" for product "Qca6391 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Qca6426 Firmware
Search vendor "Qualcomm" for product "Qca6426 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Qca6436 Firmware
Search vendor "Qualcomm" for product "Qca6436 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Qca6595au Firmware
Search vendor "Qualcomm" for product "Qca6595au Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Qca6678aq Firmware
Search vendor "Qualcomm" for product "Qca6678aq Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Sa8255p Firmware
Search vendor "Qualcomm" for product "Sa8255p Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Sd865 5g Firmware
Search vendor "Qualcomm" for product "Sd865 5g Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Snapdragon 865+ 5g Mobile Platform Firmware
Search vendor "Qualcomm" for product "Snapdragon 865+ 5g Mobile Platform Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Snapdragon 865 5g Mobile Platform Firmware
Search vendor "Qualcomm" for product "Snapdragon 865 5g Mobile Platform Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Snapdragon 870 5g Mobile Platform Firmware
Search vendor "Qualcomm" for product "Snapdragon 870 5g Mobile Platform Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Snapdragon 8 Gen 1 Mobile Platform Firmware
Search vendor "Qualcomm" for product "Snapdragon 8 Gen 1 Mobile Platform Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Snapdragon W5+ Gen 1 Wearable Platform Firmware
Search vendor "Qualcomm" for product "Snapdragon W5+ Gen 1 Wearable Platform Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Snapdragon X55 5g Modem-rf System Firmware
Search vendor "Qualcomm" for product "Snapdragon X55 5g Modem-rf System Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Snapdragon Xr2 5g Platform Firmware
Search vendor "Qualcomm" for product "Snapdragon Xr2 5g Platform Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Sw5100 Firmware
Search vendor "Qualcomm" for product "Sw5100 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Sw5100p Firmware
Search vendor "Qualcomm" for product "Sw5100p Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Sxr2130 Firmware
Search vendor "Qualcomm" for product "Sxr2130 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wcd9380 Firmware
Search vendor "Qualcomm" for product "Wcd9380 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wcn3660b Firmware
Search vendor "Qualcomm" for product "Wcn3660b Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wcn3680b Firmware
Search vendor "Qualcomm" for product "Wcn3680b Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wcn3980 Firmware
Search vendor "Qualcomm" for product "Wcn3980 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wcn3988 Firmware
Search vendor "Qualcomm" for product "Wcn3988 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wsa8810 Firmware
Search vendor "Qualcomm" for product "Wsa8810 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wsa8815 Firmware
Search vendor "Qualcomm" for product "Wsa8815 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wsa8830 Firmware
Search vendor "Qualcomm" for product "Wsa8830 Firmware"
*-
Affected
Qualcomm
Search vendor "Qualcomm"
Wsa8835 Firmware
Search vendor "Qualcomm" for product "Wsa8835 Firmware"
*-
Affected