CVE-2024-49830
Buffer Copy Without Checking Size of Input (`Classic Buffer Overflow`) in Audio
CVSS Score
6.6
EPSS Score
0.0%
EPSS Percentile
0th
Memory corruption while processing an IOCTL call to set mixer controls.
| CWE | CWE-120 |
| Vendor | qualcomm, inc. |
| Product | snapdragon |
| Published | May 6, 2025 |
| Last Updated | Feb 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for qualcomm, inc. snapdragon
Be the first to know when new medium vulnerabilities affecting qualcomm, inc. snapdragon are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:L Attack Vector
Local
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
Low
Availability
Low
Affected Versions
Qualcomm, Inc. / Snapdragon
QCA6574AU QCA6595AU QCA6678AQ QCA6688AQ QCA6698AQ QCA9367 QCA9377 SDM429W Snapdragon 429 Mobile Platform Snapdragon Auto 5G Modem-RF Gen 2 WCN3620 WCN3660B