Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
History

Wed, 11 Dec 2024 16:45:00 +0000

Type Values Removed Values Added
First Time appeared Qualcomm c-v2x 9150
Qualcomm fastconnect 6800
Qualcomm fastconnect 6900
Qualcomm qam8295p
Qualcomm qca6174a
Qualcomm qca6391
Qualcomm qca6426
Qualcomm qca6436
Qualcomm qca6574au
Qualcomm qca6696
Qualcomm qca8337
Qualcomm qcn9074
Qualcomm qcs410
Qualcomm qcs610
Qualcomm qsm8250
Qualcomm sa6145p
Qualcomm sa6150p
Qualcomm sa6155p
Qualcomm sa8145p
Qualcomm sa8150p
Qualcomm sa8155p
Qualcomm sa8195p
Qualcomm sa8295p
Qualcomm sa8530p
Qualcomm sa8540p
Qualcomm sa9000p
Qualcomm sd865 5g
Qualcomm sdx55
Qualcomm snapdragon 865\+ 5g Mobile Platform
Qualcomm snapdragon 865\+ 5g Mobile Platform Firmware
Qualcomm snapdragon 865 5g Mobile Platform
Qualcomm snapdragon 870 5g Mobile Platform
Qualcomm snapdragon 870 5g Mobile Platform Firmware
Qualcomm snapdragon W5\+ Gen 1 Wearable Platform
Qualcomm snapdragon W5\+ Gen 1 Wearable Platform Firmware
Qualcomm snapdragon X55 5g Modem-rf System
Qualcomm snapdragon Xr2 5g Platform
Qualcomm sw5100
Qualcomm sw5100p
Qualcomm sxr2130
Qualcomm video Collaboration Vc1 Platform
Qualcomm video Collaboration Vc1 Platform Firmware
Qualcomm video Collaboration Vc3 Platform
Qualcomm video Collaboration Vc3 Platform Firmware
Qualcomm wcd9341
Qualcomm wcd9370
Qualcomm wcd9380
Qualcomm wcn3660b
Qualcomm wcn3680b
Qualcomm wcn3950
Qualcomm wcn3980
Qualcomm wcn3988
Qualcomm wsa8810
Qualcomm wsa8815
Qualcomm wsa8830
Qualcomm wsa8835
CPEs cpe:2.3:h:qualcomm:c-v2x_9150:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6800:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qam8295p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6174a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6391:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6426:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6436:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6696:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca8337:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn9074:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcs410:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcs610:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qsm8250:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6145p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6150p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8145p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8150p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8155p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8195p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8295p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8530p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8540p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa9000p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sd865_5g:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sdx55:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_865\+_5g_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_865_5g_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_870_5g_mobile_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_w5\+_gen_1_wearable_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_x55_5g_modem-rf_system:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_xr2_5g_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sw5100:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sw5100p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sxr2130:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:video_collaboration_vc1_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:video_collaboration_vc3_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9341:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9370:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3660b:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3680b:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3950:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcn3988:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8810:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8815:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_865\+_5g_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_870_5g_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_w5\+_gen_1_wearable_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:video_collaboration_vc1_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:video_collaboration_vc3_platform_firmware:-:*:*:*:*:*:*:*
Vendors & Products Qualcomm c-v2x 9150
Qualcomm fastconnect 6800
Qualcomm fastconnect 6900
Qualcomm qam8295p
Qualcomm qca6174a
Qualcomm qca6391
Qualcomm qca6426
Qualcomm qca6436
Qualcomm qca6574au
Qualcomm qca6696
Qualcomm qca8337
Qualcomm qcn9074
Qualcomm qcs410
Qualcomm qcs610
Qualcomm qsm8250
Qualcomm sa6145p
Qualcomm sa6150p
Qualcomm sa6155p
Qualcomm sa8145p
Qualcomm sa8150p
Qualcomm sa8155p
Qualcomm sa8195p
Qualcomm sa8295p
Qualcomm sa8530p
Qualcomm sa8540p
Qualcomm sa9000p
Qualcomm sd865 5g
Qualcomm sdx55
Qualcomm snapdragon 865\+ 5g Mobile Platform
Qualcomm snapdragon 865\+ 5g Mobile Platform Firmware
Qualcomm snapdragon 865 5g Mobile Platform
Qualcomm snapdragon 870 5g Mobile Platform
Qualcomm snapdragon 870 5g Mobile Platform Firmware
Qualcomm snapdragon W5\+ Gen 1 Wearable Platform
Qualcomm snapdragon W5\+ Gen 1 Wearable Platform Firmware
Qualcomm snapdragon X55 5g Modem-rf System
Qualcomm snapdragon Xr2 5g Platform
Qualcomm sw5100
Qualcomm sw5100p
Qualcomm sxr2130
Qualcomm video Collaboration Vc1 Platform
Qualcomm video Collaboration Vc1 Platform Firmware
Qualcomm video Collaboration Vc3 Platform
Qualcomm video Collaboration Vc3 Platform Firmware
Qualcomm wcd9341
Qualcomm wcd9370
Qualcomm wcd9380
Qualcomm wcn3660b
Qualcomm wcn3680b
Qualcomm wcn3950
Qualcomm wcn3980
Qualcomm wcn3988
Qualcomm wsa8810
Qualcomm wsa8815
Qualcomm wsa8830
Qualcomm wsa8835

Mon, 02 Dec 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Qualcomm
Qualcomm c-v2x 9150 Firmware
Qualcomm fastconnect 6800 Firmware
Qualcomm fastconnect 6900 Firmware
Qualcomm qam8295p Firmware
Qualcomm qca6174a Firmware
Qualcomm qca6391 Firmware
Qualcomm qca6426 Firmware
Qualcomm qca6436 Firmware
Qualcomm qca6574au Firmware
Qualcomm qca6696 Firmware
Qualcomm qca8337 Firmware
Qualcomm qcn9074 Firmware
Qualcomm qcs410 Firmware
Qualcomm qcs610 Firmware
Qualcomm qsm8250 Firmware
Qualcomm qualcomm Video Collaboration Vc1 Platform Firmware
Qualcomm qualcomm Video Collaboration Vc3 Platform Firmware
Qualcomm sa6145p Firmware
Qualcomm sa6150p Firmware
Qualcomm sa6155p Firmware
Qualcomm sa8145p Firmware
Qualcomm sa8150p Firmware
Qualcomm sa8155p Firmware
Qualcomm sa8195p Firmware
Qualcomm sa8295p Firmware
Qualcomm sa8530p Firmware
Qualcomm sa8540p Firmware
Qualcomm sa9000p Firmware
Qualcomm sd865 5g Firmware
Qualcomm sdx55 Firmware
Qualcomm snapdragon 865 5g Mobile Platform Firmware
Qualcomm snapdragon X55 5g Modem-rf System Firmware
Qualcomm snapdragon Xr2 5g Platform Firmware
Qualcomm sw5100 Firmware
Qualcomm sw5100p Firmware
Qualcomm sxr2130 Firmware
Qualcomm wcd9341 Firmware
Qualcomm wcd9370 Firmware
Qualcomm wcd9380 Firmware
Qualcomm wcn3660b Firmware
Qualcomm wcn3680b Firmware
Qualcomm wcn3950 Firmware
Qualcomm wcn3980 Firmware
Qualcomm wcn3988 Firmware
Qualcomm wsa8810 Firmware
Qualcomm wsa8815 Firmware
Qualcomm wsa8830 Firmware
Qualcomm wsa8835 Firmware
CPEs cpe:2.3:o:qualcomm:c-v2x_9150_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qam8295p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6391_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6426_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6436_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcn9074_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcs410_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcs610_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qsm8250_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qualcomm_video_collaboration_vc1_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qualcomm_video_collaboration_vc3_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa6145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa6150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8195p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8295p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8530p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8540p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa9000p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sd865_5g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sdx55_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_865_5g_mobile_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_x55_5g_modem-rf_system_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_xr2_5g_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sw5100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sw5100p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sxr2130_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9341_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9370_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3660b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3680b_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3950_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcn3988_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8810_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8815_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
Vendors & Products Qualcomm
Qualcomm c-v2x 9150 Firmware
Qualcomm fastconnect 6800 Firmware
Qualcomm fastconnect 6900 Firmware
Qualcomm qam8295p Firmware
Qualcomm qca6174a Firmware
Qualcomm qca6391 Firmware
Qualcomm qca6426 Firmware
Qualcomm qca6436 Firmware
Qualcomm qca6574au Firmware
Qualcomm qca6696 Firmware
Qualcomm qca8337 Firmware
Qualcomm qcn9074 Firmware
Qualcomm qcs410 Firmware
Qualcomm qcs610 Firmware
Qualcomm qsm8250 Firmware
Qualcomm qualcomm Video Collaboration Vc1 Platform Firmware
Qualcomm qualcomm Video Collaboration Vc3 Platform Firmware
Qualcomm sa6145p Firmware
Qualcomm sa6150p Firmware
Qualcomm sa6155p Firmware
Qualcomm sa8145p Firmware
Qualcomm sa8150p Firmware
Qualcomm sa8155p Firmware
Qualcomm sa8195p Firmware
Qualcomm sa8295p Firmware
Qualcomm sa8530p Firmware
Qualcomm sa8540p Firmware
Qualcomm sa9000p Firmware
Qualcomm sd865 5g Firmware
Qualcomm sdx55 Firmware
Qualcomm snapdragon 865 5g Mobile Platform Firmware
Qualcomm snapdragon X55 5g Modem-rf System Firmware
Qualcomm snapdragon Xr2 5g Platform Firmware
Qualcomm sw5100 Firmware
Qualcomm sw5100p Firmware
Qualcomm sxr2130 Firmware
Qualcomm wcd9341 Firmware
Qualcomm wcd9370 Firmware
Qualcomm wcd9380 Firmware
Qualcomm wcn3660b Firmware
Qualcomm wcn3680b Firmware
Qualcomm wcn3950 Firmware
Qualcomm wcn3980 Firmware
Qualcomm wcn3988 Firmware
Qualcomm wsa8810 Firmware
Qualcomm wsa8815 Firmware
Qualcomm wsa8830 Firmware
Qualcomm wsa8835 Firmware
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 02 Dec 2024 10:30:00 +0000

Type Values Removed Values Added
Description Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
Title Buffer Over-read in Neural Processing Unit
Weaknesses CWE-126
References
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: qualcomm

Published: 2024-12-02T10:18:40.468Z

Updated: 2024-12-02T15:43:14.290Z

Reserved: 2024-04-23T04:42:06.931Z

Link: CVE-2024-33037

cve-icon Vulnrichment

Updated: 2024-12-02T15:42:21.853Z

cve-icon NVD

Status : Analyzed

Published: 2024-12-02T11:15:07.753

Modified: 2024-12-11T16:15:14.327

Link: CVE-2024-33037

cve-icon Redhat

No data.