CVE-2024-21482

MEDIUM

Qualcomm IPQ6018 Firmware - Memory Corruption via Secure Boot Bypass

Title source: llm
STIX 2.1

Description

Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.

References (1)

Core 1

Scores

CVSS v3 6.8
EPSS 0.0002
EPSS Percentile 4.8%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-119
Status published
Products (50)
qualcomm/csr8811_firmware
qualcomm/immersive_home_214_platform_firmware
qualcomm/immersive_home_216_platform_firmware
qualcomm/immersive_home_316_platform_firmware
qualcomm/immersive_home_318_platform_firmware
qualcomm/immersive_home_3210_platform_firmware
qualcomm/immersive_home_326_platform_firmware
qualcomm/ipq5010_firmware
qualcomm/ipq5028_firmware
qualcomm/ipq5302_firmware
... and 40 more
Published Jul 01, 2024
Tracked Since Feb 18, 2026