Qualcomm Products Memory Corruption Vulnerability via Deprecated DMABUF IOCTL Calls
Vulnerability
A memory corruption vulnerability has been identified in various chipsets of Qualcomm products, including those in the Snapdragon series, due to the use of deprecated DMABUF IOCTL calls for managing video memory. This vulnerability creates a use-after-free condition, which can lead to memory corruption.
Impact
Exploitation of this vulnerability causes memory corruption, creating a use-after-free condition that can potentially be exploited to execute arbitrary code or cause a denial-of-service condition.
Remediation
Qualcomm has notified device manufacturers about this vulnerability and is actively sharing patches. For information on the patching status of released devices, contact the device manufacturer.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
