← Back to search

CVE-2026-24076

6.7 MEDIUM

Published 2026-08-04 · Updated 2026-08-06

AI risk analysis

Summary
The flaw involves memory corruption when processing registry values with incorrect types using a direct query method, potentially leading to arbitrary code execution.
Exploitability
Exploitation requires specific conditions and direct access to the firmware's registry, making it moderately difficult but not impossible.
Blast radius
If exploited, this vulnerability could lead to full system compromise affecting devices running affected Qualcomm firmware versions.
Prioritized remediation
Update all affected Qualcomm firmware to the latest version immediately to mitigate the risk.
memory-corruptionfirmwarerceqcom

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Memory Corruption when processing registry values with incorrect types using a direct query method.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-120

Vendors

qualcomm

Products

aqt1000 firmware, aqt1000, cologne firmware, cologne, fastconnect 6200 firmware, fastconnect 6200, fastconnect 6700 firmware, fastconnect 6700, fastconnect 6800 firmware, fastconnect 6800, fastconnect 6900 firmware, fastconnect 6900

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.