Vulnerabilities > CVE-2024-33036 - Use of Out-of-range Pointer Offset vulnerability in Qualcomm products

047910
CVSS 6.7 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
qualcomm
CWE-823

Summary

Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.

Vulnerable Configurations

Part Description Count
OS
Qualcomm
52
Hardware
Qualcomm
52

Common Weakness Enumeration (CWE)