HIGH · 7.3

CVE-2024-21452

Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.

Vulnerability Description

Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.

CVSS Score

7.3

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
LOW
Integrity
LOW
Availability
LOW

Affected Products

VendorProductVersions
QualcommC-V2X 9150 Firmware-
QualcommC-V2X 9150-
QualcommQca6584Au Firmware-
QualcommQca6584Au-
QualcommQca6698Aq Firmware-
QualcommQca6698Aq-
QualcommSnapdragon Auto 5G Modem-Rf Firmware-
QualcommSnapdragon Auto 5G Modem-Rf-
QualcommSnapdragon Auto 5G Modem-Rf Gen 2 Firmware-
QualcommSnapdragon Auto 5G Modem-Rf Gen 2-
QualcommSnapdragon Auto 4G Modem Firmware-
QualcommSnapdragon Auto 4G Modem-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2024-21452?

CVE-2024-21452 is a vulnerability with a CVSS score of 7.3 (HIGH). Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.

How severe is CVE-2024-21452?

CVE-2024-21452 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2024-21452?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm C-V2X 9150 Firmware, Qualcomm C-V2X 9150, Qualcomm Qca6584Au Firmware, Qualcomm Qca6584Au, Qualcomm Qca6698Aq Firmware.