ZeroHour

CVE-2024-45555

CVSS 3.1
7.8 high
EPSS
<1%p4
Published
()
Modified
Description

Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification. This allows unauthorized programs to be injected into security-sensitive images, enabling the booting of a tampered IFS2 system image.

Vendors
qualcomm
Products
msm8996au firmware, qam8255p firmware, qam8295p firmware, qam8620p firmware, qam8650p firmware, qam8775p firmware, qamsrv1h firmware, qamsrv1m firmware, qca6564a firmware, qca6564au firmware, qca6574a firmware, qca6574au firmware
Weakness
CWE-787, CWE-190
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.