CVE-2024-33039
MEDIUMDescription
Memory corruption when PAL client calls PAL service APIs by passing a random value as handle and the handle is not validated by the service.
Is your site exposed to CVE-2024-33039?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| qualcomm | qam8255p_firmware |
| qualcomm | qam8255p |
| qualcomm | qam8650p_firmware |
| qualcomm | qam8650p |
| qualcomm | qam8775p_firmware |
| qualcomm | qam8775p |
| qualcomm | qamsrv1h_firmware |
| qualcomm | qamsrv1h |
| qualcomm | qamsrv1m_firmware |
| qualcomm | qamsrv1m |
| qualcomm | sa7255p_firmware |
| qualcomm | sa7255p |
| qualcomm | sa7775p_firmware |
| qualcomm | sa7775p |
| qualcomm | sa8255p_firmware |
| qualcomm | sa8255p |
| qualcomm | sa8620p_firmware |
| qualcomm | sa8620p |
| qualcomm | sa8650p_firmware |
| qualcomm | sa8650p |
| qualcomm | sa8770p_firmware |
| qualcomm | sa8770p |
| qualcomm | sa8775p_firmware |
| qualcomm | sa8775p |
| qualcomm | sa9000p_firmware |
| qualcomm | sa9000p |
| qualcomm | snapdragon_w5\+_gen_1_wearable_platform_firmware |
| qualcomm | snapdragon_w5\+_gen_1_wearable_platform |
| qualcomm | srv1h_firmware |
| qualcomm | srv1h |
| qualcomm | srv1m_firmware |
| qualcomm | srv1m |
| qualcomm | sw5100_firmware |
| qualcomm | sw5100 |
| qualcomm | sw5100p_firmware |
| qualcomm | sw5100p |
| qualcomm | wcn3980_firmware |
| qualcomm | wcn3980 |
| qualcomm | wcn3988_firmware |
| qualcomm | wcn3988 |
| qualcomm | wsa8830_firmware |
| qualcomm | wsa8830 |
| qualcomm | wsa8835_firmware |
| qualcomm | wsa8835 |
References
Frequently Asked Questions
What is CVE-2024-33039? +
How severe is CVE-2024-33039? +
What products are affected by CVE-2024-33039? +
How do I check if I'm vulnerable to CVE-2024-33039? +
Related Vulnerabilities
Untrusted Pointer Dereference in ASUS System Control Interface v3, ASUS System Control Interface, and ASUS Business Manager allows a local …
Untrusted pointer dereference for some Intel(R) QuickAssist Adapter 8960 software before version 1.13 within Ring 3: User Applications may allow …
An untrusted pointer dereference in the ionic cloud driver for VMWare ESXi could allow an attacker with an unprivileged VM …
Untrusted pointer dereference in the render_bin_output function in the h5dump tool in HDF5 before 2.1.1 allows attackers to cause a …
Untrusted pointer dereference in Microsoft Graphics Component allows an unauthorized attacker to execute code over a network.
Within Zabbix, users have the ability to directly modify memory pointers in the JavaScript engine.