CVE-2024-23379

MEDIUM

Qualcomm Wsa8835 Firmware - Double Free

Title source: rule
STIX 2.1

Description

Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario.

Scores

CVSS v3 6.7
EPSS 0.0006
EPSS Percentile 18.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-415
Status published
Products (34)
qualcomm/fastconnect_6900_firmware
qualcomm/fastconnect_7800_firmware
qualcomm/qam8255p_firmware
qualcomm/qam8650p_firmware
qualcomm/qam8775p_firmware
qualcomm/qamsrv1h_firmware
qualcomm/qamsrv1m_firmware
qualcomm/qca6310_firmware
qualcomm/qca6320_firmware
qualcomm/qca6584au_firmware
... and 24 more
Published Oct 07, 2024
Tracked Since Feb 18, 2026