🛡️ CVE-2024-33040
🟡 CVSS 6.7 — Medium ✅ No Known Exploit CWE-416 NVD
6.7
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.

Details

Severity MEDIUM
CVSS Score 6.7
CVSS Vector CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE CWE-416
Public Exploit ✅ No
Source NVD
Published 2024-12-02
Updated 2026-06-02
Modified 2024-12-12

Affected Packages

Software From version Fixed in
fastconnect-6800-firmware
fastconnect-6900-firmware
fastconnect-7800-firmware
qam8255p-firmware
qca6391-firmware
qca6426-firmware
qca6436-firmware
qca6595au-firmware
qca6678aq-firmware
sa8255p-firmware
sd865-5g-firmware
snapdragon-8-gen-1-mobile-platform-firmware
snapdragon-865-5g-mobile-platform-firmware
snapdragon-865\+-5g-mobile-platform-firmware
snapdragon-870-5g-mobile-platform-firmware
snapdragon-w5\+-gen-1-wearable-platform-firmware
snapdragon-x55-5g-modem-rf-system-firmware
snapdragon-xr2-5g-platform-firmware
sw5100-firmware
sw5100p-firmware
sxr2130-firmware
wcd9380-firmware
wcn3660b-firmware
wcn3680b-firmware
wcn3980-firmware
wcn3988-firmware
wsa8810-firmware
wsa8815-firmware
wsa8830-firmware
wsa8835-firmware

Similar Threats

Patch Gap Protection

Running software with known vulnerabilities?

BotEraser can help reduce exposure by blocking IPs associated with exploit activity — even before a patch is available.

Start Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.