BDU:2025-06403
Уязвимость микропрограммного обеспечения встраиваемых плат Qualcomm, связанная с ошибками разграничения доступа, позволяющая нарушителю повредить память
📄 Описание
Уязвимость микропрограммного обеспечения встраиваемых плат Qualcomm связана с ошибками разграничения доступа. Эксплуатация уязвимости может позволить нарушителю повредить память
🖥️ Уязвимое ПО
Qualcomm Technologies Inc.
Наименование ПО: SD 8 Gen1 5G, WCD9380, WSA8830, WSA8835, AQT1000, AR8035, SD 675, SD 670, SD855, Snapdragon 855 Mobile Platform, Snapdragon 855+/860 Mobile Platform (SM8150-AC), Snapdragon 865 5G Mobile Platform, Snapdragon 865+ 5G Mobile Platform (SM8250-AB), Snapdragon 870 5G Mobile Platform (SM8250-AC), Snapdragon X55 5G Modem-RF System, Snapdragon XR2 5G Platform, Snapdragon X50 5G Modem-RF System, Snapdragon 8 Gen 1 Mobile Platform, Snapdragon 888 5G Mobile Platform, Snapdragon 888+ 5G Mobile Platform (SM8350-AC), Snapdragon 765 5G Mobile Platform (SM7250-AA), Snapdragon 765G 5G Mobile Platform (SM7250-AB), Snapdragon 768G 5G Mobile Platform (SM7250-AC), Snapdragon 670 Mobile Platform, Snapdragon 675 Mobile Platform, Snapdragon 678 Mobile Platform (SM6150-AC), Snapdragon 778G 5G Mobile Platform, Snapdragon 778G+ 5G Mobile Platform (SM7325-AE), Snapdragon 780G 5G Mobile Platform, Snapdragon 782G Mobile Platform (SM7325-AF), Snapdragon 7c+ Gen 3 Compute Platform, Snapdragon 8+ Gen 1 Mobile Platform, Snapdragon 845 Mobile Platform, Snapdragon 850 Mobile Compute Platform, Snapdragon 8cx Compute Platform (SC8180X-AA, AB), Snapdragon 8cx Gen 2 5G Compute Platform (SC8180XP-AA, AB), Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB, BB), Snapdragon AR2 Gen 1 Platform, Snapdragon X24 LTE Modem, Snapdragon X65 5G Modem-RF System, Qualcomm® Video Collaboration VC3 Platform, Snapdragon 8 Gen 2 Mobile Platform, Snapdragon 8+ Gen 2 Mobile Platform, Snapdragon X75 5G Modem-RF System, SA8770P, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584AU, QCA6678AQ, Snapdragon 8 Gen 3 Mobile Platform, Snapdragon Auto 5G Modem-RF Gen 2, Snapdragon X35 5G Modem-RF System, SA8775P, QAM8620P, SA7775P, SA8620P, SA8650P, Snapdragon X62 5G Modem-RF System, Snapdragon X72 5G Modem-RF System, SRV1H, SRV1L, SRV1M, SXR2250P, TalynPlus, QCA6688AQ, SA8530P, QCS9100, SM4635, FastConnect 6700, FastConnect 6900, FastConnect 7800, QCS4490, QCM4490, WCD9370, WCD9390, WCD9395, WCN3950, WCN6740, WSA8810, WSA8815, WSA8832, WSA8840, WSA8845, WSA8845H, QAM8255P, QAM8295P, QAM8650P, QAM8775P, QAMSRV1H, QAMSRV1M, QCA6595, QCA6595AU, QCA6696, QCA6698AQ, QCA6797AQ, QCA8081, QCA8337, QCC710, QCM5430, QCM6490, QCM8550, QCN6224, QCN6274, QCN9012, QCN9274, QCS5430, QCS6490, QCS8550, QFW7114, QFW7124, SA6155P, SA7255P, SA8155P, SA8255P, SA8295P, SA8540P, SA9000P, SDX55, SM8550P, SXR2230P, SXR2330P, WCD9340, WCD9341, WCD9375, WCD9378, WCD9385, WCN3980, WCN3988, Snapdragon AR1 Gen 1 Platform, Snapdragon 8c Compute Platform (SC8180X-AD), Snapdragon 8c Compute Platform (SC8180XP-AD), Snapdragon 8cx Compute Platform (SC8180XP-AC, AF), Snapdragon 8cx Gen 2 5G Compute Platform (SC8180X-AC, AF), Snapdragon X32 5G Modem-RF System, FastConnect 6200, FastConnect 6800, QCA6174A, QCA6391, QCA6420, QCA6421, QCA6426, QCA6430, QCA6431, QCA6436, QCN9011, QDU1000, QDU1010, QDU1110, QDU1210, QDX1010, QDX1011, QEP8111, QRU1032, QRU1052, QRU1062, QSM8350, SA6145P, SA6155, SA8150P, SA8155, SC8380XP, SD865 5G, SD888, SG8275P, SM7250P, SM7315, SM7325P, Snapdragon 4 Gen 2 Mobile Platform, SSG2115P, SSG2125P, SXR1230P, SXR2130, WCD9326, WCN3990, Robotics RB3 Platform, SD 8CX, Vision Intelligence 300 Platform, Vision Intelligence 400 Platform, QCA6310, QCA6335, QCA6564A, QCA9377, SDX57M, SDX80M
Версия ПО: - (SD 8 Gen1 5G), - (WCD9380), - (WSA8830), - (WSA8835), - (AQT1000), - (AR8035), - (SD 675), - (SD 670), - (SD855), - (Snapdragon 855 Mobile Platform), - (Snapdragon 855+/860 Mobile Platform (SM8150-AC)), - (Snapdragon 865 5G Mobile Platform), - (Snapdragon 865+ 5G Mobile Platform (SM8250-AB)), - (Snapdragon 870 5G Mobile Platform (SM8250-AC)), - (Snapdragon X55 5G Modem-RF System), - (Snapdragon XR2 5G Platform), - (Snapdragon X50 5G Modem-RF System), - (Snapdragon 8 Gen 1 Mobile Platform), - (Snapdragon 888 5G Mobile Platform), - (Snapdragon 888+ 5G Mobile Platform (SM8350-AC)), - (Snapdragon 765 5G Mobile Platform (SM7250-AA)), - (Snapdragon 765G 5G Mobile Platform (SM7250-AB)), - (Snapdragon 768G 5G Mobile Platform (SM7250-AC)), - (Snapdragon 670 Mobile Platform), - (Snapdragon 675 Mobile Platform), - (Snapdragon 678 Mobile Platform (SM6150-AC)), - (Snapdragon 778G 5G Mobile Platform), - (Snapdragon 778G+ 5G Mobile Platform (SM7325-AE)), - (Snapdragon 780G 5G Mobile Platform), - (Snapdragon 782G Mobile Platform (SM7325-AF)), - (Snapdragon 7c+ Gen 3 Compute Platform), - (Snapdragon 8+ Gen 1 Mobile Platform), - (Snapdragon 845 Mobile Platform), - (Snapdragon 850 Mobile Compute Platform), - (Snapdragon 8cx Compute Platform (SC8180X-AA, AB)), - (Snapdragon 8cx Gen 2 5G Compute Platform (SC8180XP-AA, AB)), - (Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB, BB)), - (Snapdragon AR2 Gen 1 Platform), - (Snapdragon X24 LTE Modem), - (Snapdragon X65 5G Modem-RF System), - (Qualcomm® Video Collaboration VC3 Platform), - (Snapdragon 8 Gen 2 Mobile Platform), - (Snapdragon 8+ Gen 2 Mobile Platform), - (Snapdragon X75 5G Modem-RF System), - (SA8770P), - (QCA6564AU), - (QCA6574), - (QCA6574A), - (QCA6574AU), - (QCA6584AU), - (QCA6678AQ), - (Snapdragon 8 Gen 3 Mobile Platform), - (Snapdragon Auto 5G Modem-RF Gen 2), - (Snapdragon X35 5G Modem-RF System), - (SA8775P), - (QAM8620P), - (SA7775P), - (SA8620P), - (SA8650P), - (Snapdragon X62 5G Modem-RF System), - (Snapdragon X72 5G Modem-RF System), - (SRV1H), - (SRV1L), - (SRV1M), - (SXR2250P), - (TalynPlus), - (QCA6688AQ), - (SA8530P), - (QCS9100), - (SM4635), - (FastConnect 6700), - (FastConnect 6900), - (FastConnect 7800), - (QCS4490), - (QCM4490), - (WCD9370), - (WCD9390), - (WCD9395), - (WCN3950), - (WCN6740), - (WSA8810), - (WSA8815), - (WSA8832), - (WSA8840), - (WSA8845), - (WSA8845H), - (QAM8255P), - (QAM8295P), - (QAM8650P), - (QAM8775P), - (QAMSRV1H), - (QAMSRV1M), - (QCA6595), - (QCA6595AU), - (QCA6696), - (QCA6698AQ), - (QCA6797AQ), - (QCA8081), - (QCA8337), - (QCC710), - (QCM5430), - (QCM6490), - (QCM8550), - (QCN6224), - (QCN6274), - (QCN9012), - (QCN9274), - (QCS5430), - (QCS6490), - (QCS8550), - (QFW7114), - (QFW7124), - (SA6155P), - (SA7255P), - (SA8155P), - (SA8255P), - (SA8295P), - (SA8540P), - (SA9000P), - (SDX55), - (SM8550P), - (SXR2230P), - (SXR2330P), - (WCD9340), - (WCD9341), - (WCD9375), - (WCD9378), - (WCD9385), - (WCN3980), - (WCN3988), - (Snapdragon AR1 Gen 1 Platform), - (Snapdragon 8c Compute Platform (SC8180X-AD)), - (Snapdragon 8c Compute Platform (SC8180XP-AD)), - (Snapdragon 8cx Compute Platform (SC8180XP-AC, AF)), - (Snapdragon 8cx Gen 2 5G Compute Platform (SC8180X-AC, AF)), - (Snapdragon X32 5G Modem-RF System), - (FastConnect 6200), - (FastConnect 6800), - (QCA6174A), - (QCA6391), - (QCA6420), - (QCA6421), - (QCA6426), - (QCA6430), - (QCA6431), - (QCA6436), - (QCN9011), - (QDU1000), - (QDU1010), - (QDU1110), - (QDU1210), - (QDX1010), - (QDX1011), - (QEP8111), - (QRU1032), - (QRU1052), - (QRU1062), - (QSM8350), - (SA6145P), - (SA6155), - (SA8150P), - (SA8155), - (SC8380XP), - (SD865 5G), - (SD888), - (SG8275P), - (SM7250P), - (SM7315), - (SM7325P), - (Snapdragon 4 Gen 2 Mobile Platform), - (SSG2115P), - (SSG2125P), - (SXR1230P), - (SXR2130), - (WCD9326), - (WCN3990), - (Robotics RB3 Platform), - (SD 8CX), - (Vision Intelligence 300 Platform), - (Vision Intelligence 400 Platform), - (QCA6310), - (QCA6335), - (QCA6564A), - (QCA9377), - (SDX57M), - (SDX80M)
Тип ПО: Микропрограммный код, Сетевое средство, ПО сетевого программно-аппаратного средства, Сетевое программное средство, Микропрограммный код аппаратных компонентов компьютера
ОС / платформа:
⚙️ Технические сведения
Тип ошибки
Неправильный контроль доступа (CWE-284)
Класс уязвимости
Уязвимость архитектуры
Дата выявления
02.12.2024
Способ эксплуатации
Нарушение авторизации
Способ устранения
Обновление программного обеспечения
Статус уязвимости
Подтверждена производителем
Наличие эксплойта
Данные уточняются
Устранение
Уязвимость устранена
📊 CVSS
CVSS 2.0
AV:L/AC:L/Au:S/C:C/I:C/A:C
CVSS 3.0
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
⚠️ Уровень опасности
Средний уровень опасности (базовая оценка CVSS 2.0 составляет 6,8)
Высокий уровень опасности (базовая оценка CVSS 3.1 составляет 7,8)
🏷️ Идентификаторы
CVE-2024-53010
📅 Даты
Дата публикации
05.06.2025
Последнее обновление
13.08.2025
← Назад к списку