Vulnerability Description
Memory corruption may occur when invoking IOCTL calls from userspace to the camera kernel driver to dump request information, due to a missing memory requirement check.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Fastconnect 6900 Firmware | - |
| Qualcomm | Fastconnect 6900 | - |
| Qualcomm | Fastconnect 7800 Firmware | - |
| Qualcomm | Fastconnect 7800 | - |
| Qualcomm | Sdm429W Firmware | - |
| Qualcomm | Sdm429W | - |
| Qualcomm | Snapdragon 429 Mobile Firmware | - |
| Qualcomm | Snapdragon 429 Mobile | - |
| Qualcomm | Snapdragon 8 Gen 1 Mobile Firmware | - |
| Qualcomm | Snapdragon 8 Gen 1 Mobile | - |
| Qualcomm | Wcd9380 Firmware | - |
| Qualcomm | Wcd9380 | - |
| Qualcomm | Wcn3620 Firmware | - |
| Qualcomm | Wcn3620 | - |
| Qualcomm | Wcn3660B Firmware | - |
| Qualcomm | Wcn3660B | - |
| Qualcomm | Wsa8830 Firmware | - |
| Qualcomm | Wsa8830 | - |
| Qualcomm | Wsa8835 Firmware | - |
| Qualcomm | Wsa8835 | - |
Related Weaknesses (CWE)
References
- https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2025-bullPatchVendor Advisory
FAQ
What is CVE-2024-45579?
CVE-2024-45579 is a vulnerability with a CVSS score of 7.8 (HIGH). Memory corruption may occur when invoking IOCTL calls from userspace to the camera kernel driver to dump request information, due to a missing memory requirement check.
How severe is CVE-2024-45579?
CVE-2024-45579 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-45579?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Fastconnect 6900 Firmware, Qualcomm Fastconnect 6900, Qualcomm Fastconnect 7800 Firmware, Qualcomm Fastconnect 7800, Qualcomm Sdm429W Firmware.