Qualcomm Automotive Platform Memory Corruption Vulnerability Due to Integer Overflow
Vulnerability
A memory corruption vulnerability has been identified in the Qualcomm Automotive Platform. This issue arises during the generation of attestation reports, where a buffer copy operation fails due to an integer overflow, leading to memory corruption. The vulnerability affects several chipsets within the Automotive Platform.
Impact
Exploitation of this vulnerability causes memory corruption, which can lead to arbitrary code execution or other undefined behavior.
Remediation
Qualcomm has notified device manufacturers about this vulnerability and is actively sharing patches. For information on the patching status of released devices, contact the device manufacturer.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
