Memory corruption while redirecting log file to any file location with any file name.
The vulnerability results from insufficient input validation (CWE-20) and out-of-bounds write (CWE-787). During the log file redirection operation to a path and filename specified by the attacker, improperly handled data leads to corruption of the process memory areas. Due to the network attack vector (AV:N) and lack of requirements for user privileges and interaction, the exploit can be conducted remotely without any authorization.
An attacker can gain full control over the vulnerable device, including the ability to read and modify data and disrupt its operation. In the worst-case scenario, remote code execution (RCE) is possible with the privileges level of the process handling the logs.
Apply patches available from the manufacturer in accordance with the Qualcomm security bulletin from April 2024: https://docs.qualcomm.com/product/publicresources/securitybulletin/april-2024-bulletin.html
Firmware of chipsets: Qualcomm AR8035, AR9380, CSR8811 and other products listed in the Qualcomm security bulletin from April 2024 — the complete list is available in the manufacturer's references.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HQualcomm Ar8035
HWQualcommall versionsQualcomm Ar8035 Firmware
OSQualcommall versionsQualcomm Ar9380
HWQualcommall versionsQualcomm Ar9380 Firmware
OSQualcommall versionsQualcomm Csr8811
HWQualcommall versionsQualcomm Csr8811 Firmware
OSQualcommall versionsQualcomm Fastconnect 6900
HWQualcommall versionsQualcomm Fastconnect 6900 Firmware
OSQualcommall versionsQualcomm Fastconnect 7800
HWQualcommall versionsQualcomm Fastconnect 7800 Firmware
OSQualcommall versionsQualcomm Immersive Home 214
HWQualcommall versionsQualcomm Immersive Home 214 Firmware
OSQualcommall versionsQualcomm Immersive Home 216
HWQualcommall versionsQualcomm Immersive Home 216 Firmware
OSQualcommall versionsQualcomm Immersive Home 316
HWQualcommall versionsQualcomm Immersive Home 316 Firmware
OSQualcommall versionsQualcomm Immersive Home 318
HWQualcommall versionsQualcomm Immersive Home 318 Firmware
OSQualcommall versionsQualcomm Immersive Home 3210
HWQualcommall versionsQualcomm Immersive Home 3210 Firmware
OSQualcommall versionsQualcomm Immersive Home 326
HWQualcommall versionsQualcomm Immersive Home 326 Firmware
OSQualcommall versionsQualcomm Ipq4018
HWQualcommall versionsQualcomm Ipq4018 Firmware
OSQualcommall versionsQualcomm Ipq4019
HWQualcommall versionsQualcomm Ipq4019 Firmware
OSQualcommall versionsQualcomm Ipq4028
HWQualcommall versionsQualcomm Ipq4028 Firmware
OSQualcommall versionsQualcomm Ipq4029
HWQualcommall versionsQualcomm Ipq4029 Firmware
OSQualcommall versions
Related vulnerabilities
Przepełnienie bufora stosu w NAN Service Discovery Frames — Qualcomm
Memory corruption w Qualcomm podczas składania pakietów RTP (NALUs)
Qualcomm Firmware — memory corruption przy wyborze PLMN z listy SOR
Qualcomm: podatność kryptograficzna umożliwiająca Auth Bypass podczas pobierania
Qualcomm: Uszkodzenie pamięci przy parsowaniu ML IE w firmware