๐Ÿ” CVE Alert

CVE-2024-43047

HIGH 7.8 โš ๏ธ CISA KEV

Use After Free in DSP Service

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

Memory corruption while maintaining memory maps of HLOS memory.

CWE CWE-416
Vendor qualcomm, inc.
Product snapdragon
Published Oct 7, 2024
Last Updated Oct 21, 2025
โš ๏ธ Actively Exploited โ€” Act Now

Get instant alerts for qualcomm, inc. snapdragon

This vulnerability is actively exploited in the wild. Set up free real-time alerts so you're first to know about threats like CVE-2024-43047.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

Qualcomm, Inc. / Snapdragon
FastConnect 6700 FastConnect 6800 FastConnect 6900 FastConnect 7800 QAM8295P QCA6174A QCA6391 QCA6426 QCA6436 QCA6574AU QCA6584AU QCA6595 QCA6595AU QCA6688AQ QCA6696 QCA6698AQ QCS410 QCS610 QCS6490 Qualcomm Video Collaboration VC1 Platform Qualcomm Video Collaboration VC3 Platform SA4150P SA4155P SA6145P SA6150P SA6155P SA8145P SA8150P SA8155P SA8195P SA8295P SD660 SD865 5G SG4150P Snapdragon 660 Mobile Platform Snapdragon 680 4G Mobile Platform Snapdragon 685 4G Mobile Platform (SM6225-AD) Snapdragon 8 Gen 1 Mobile Platform Snapdragon 865 5G Mobile Platform Snapdragon 865+ 5G Mobile Platform (SM8250-AB) Snapdragon 870 5G Mobile Platform (SM8250-AC) Snapdragon 888 5G Mobile Platform Snapdragon 888+ 5G Mobile Platform (SM8350-AC) Snapdragon Auto 5G Modem-RF Snapdragon Auto 5G Modem-RF Gen 2 Snapdragon X55 5G Modem-RF System Snapdragon XR2 5G Platform SW5100 SW5100P SXR2130 WCD9335 WCD9341 WCD9370 WCD9375 WCD9380 WCD9385 WCN3950 WCN3980 WCN3988 WCN3990 WSA8810 WSA8815 WSA8830 WSA8835

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
docs.qualcomm.com: https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html cisa.gov: https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-43047