Lucene search

K
cvelistQualcommCVELIST:CVE-2024-21482
HistoryJul 01, 2024 - 2:17 p.m.

CVE-2024-21482 Improper Restriction of Operations within the Bounds of a Memory Buffer in Linux Boot Loader

2024-07-0114:17:16
CWE-119
qualcomm
www.cve.org
9
cve-2024-21482
memory buffer
secure boot
authentication
kernel image

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.2%

Memory corruption during the secure boot process, when the bootm command is used, it bypasses the authentication of the kernel/rootfs image.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "platforms": [
      "Snapdragon Wired Infrastructure and Networking"
    ],
    "product": "Snapdragon",
    "vendor": "Qualcomm, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "CSR8811"
      },
      {
        "status": "affected",
        "version": "Immersive Home 214 Platform"
      },
      {
        "status": "affected",
        "version": "Immersive Home 216 Platform"
      },
      {
        "status": "affected",
        "version": "Immersive Home 316 Platform"
      },
      {
        "status": "affected",
        "version": "Immersive Home 318 Platform"
      },
      {
        "status": "affected",
        "version": "Immersive Home 3210 Platform"
      },
      {
        "status": "affected",
        "version": "Immersive Home 326 Platform"
      },
      {
        "status": "affected",
        "version": "IPQ5010"
      },
      {
        "status": "affected",
        "version": "IPQ5028"
      },
      {
        "status": "affected",
        "version": "IPQ5302"
      },
      {
        "status": "affected",
        "version": "IPQ5312"
      },
      {
        "status": "affected",
        "version": "IPQ5332"
      },
      {
        "status": "affected",
        "version": "IPQ6000"
      },
      {
        "status": "affected",
        "version": "IPQ6010"
      },
      {
        "status": "affected",
        "version": "IPQ6018"
      },
      {
        "status": "affected",
        "version": "IPQ6028"
      },
      {
        "status": "affected",
        "version": "IPQ8070A"
      },
      {
        "status": "affected",
        "version": "IPQ8071A"
      },
      {
        "status": "affected",
        "version": "IPQ8072A"
      },
      {
        "status": "affected",
        "version": "IPQ8074A"
      },
      {
        "status": "affected",
        "version": "IPQ8076"
      },
      {
        "status": "affected",
        "version": "IPQ8076A"
      },
      {
        "status": "affected",
        "version": "IPQ8078"
      },
      {
        "status": "affected",
        "version": "IPQ8078A"
      },
      {
        "status": "affected",
        "version": "IPQ8173"
      },
      {
        "status": "affected",
        "version": "IPQ8174"
      },
      {
        "status": "affected",
        "version": "IPQ9008"
      },
      {
        "status": "affected",
        "version": "IPQ9554"
      },
      {
        "status": "affected",
        "version": "IPQ9570"
      },
      {
        "status": "affected",
        "version": "IPQ9574"
      },
      {
        "status": "affected",
        "version": "QCA4024"
      },
      {
        "status": "affected",
        "version": "QCA8075"
      },
      {
        "status": "affected",
        "version": "QCA8081"
      },
      {
        "status": "affected",
        "version": "QCA8082"
      },
      {
        "status": "affected",
        "version": "QCA8084"
      },
      {
        "status": "affected",
        "version": "QCA8085"
      },
      {
        "status": "affected",
        "version": "QCA8386"
      },
      {
        "status": "affected",
        "version": "QCA9888"
      },
      {
        "status": "affected",
        "version": "QCA9889"
      },
      {
        "status": "affected",
        "version": "QCF8000"
      },
      {
        "status": "affected",
        "version": "QCF8001"
      },
      {
        "status": "affected",
        "version": "QCN5022"
      },
      {
        "status": "affected",
        "version": "QCN5024"
      },
      {
        "status": "affected",
        "version": "QCN5052"
      },
      {
        "status": "affected",
        "version": "QCN5122"
      },
      {
        "status": "affected",
        "version": "QCN5124"
      },
      {
        "status": "affected",
        "version": "QCN5152"
      },
      {
        "status": "affected",
        "version": "QCN5154"
      },
      {
        "status": "affected",
        "version": "QCN5164"
      },
      {
        "status": "affected",
        "version": "QCN6023"
      },
      {
        "status": "affected",
        "version": "QCN6024"
      },
      {
        "status": "affected",
        "version": "QCN6112"
      },
      {
        "status": "affected",
        "version": "QCN6122"
      },
      {
        "status": "affected",
        "version": "QCN6132"
      },
      {
        "status": "affected",
        "version": "QCN6402"
      },
      {
        "status": "affected",
        "version": "QCN6412"
      },
      {
        "status": "affected",
        "version": "QCN6422"
      },
      {
        "status": "affected",
        "version": "QCN6432"
      },
      {
        "status": "affected",
        "version": "QCN9000"
      },
      {
        "status": "affected",
        "version": "QCN9022"
      },
      {
        "status": "affected",
        "version": "QCN9024"
      },
      {
        "status": "affected",
        "version": "QCN9070"
      },
      {
        "status": "affected",
        "version": "QCN9072"
      },
      {
        "status": "affected",
        "version": "QCN9074"
      },
      {
        "status": "affected",
        "version": "QCN9100"
      },
      {
        "status": "affected",
        "version": "QCN9274"
      },
      {
        "status": "affected",
        "version": "SDX55"
      },
      {
        "status": "affected",
        "version": "SDX65M"
      },
      {
        "status": "affected",
        "version": "Snapdragon X65 5G Modem-RF System"
      }
    ]
  }
]

CVSS3

6.8

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS

0

Percentile

9.2%

Related for CVELIST:CVE-2024-21482