← Back to search

CVE-2026-24080

7.8 HIGH

Published 2026-08-04 · Updated 2026-08-06

AI risk analysis

Summary
The flaw involves memory corruption due to improper handling of malformed request parameters in the fingerprint TA, potentially leading to arbitrary code execution.
Exploitability
Exploitation requires specific malformed requests and access to the affected firmware, making it moderately difficult but feasible with the right conditions.
Blast radius
If exploited, this could result in unauthorized access or control over devices using the affected firmware, impacting a wide range of systems.
Prioritized remediation
Update to the latest firmware versions that address the vulnerability immediately.
memory-corruptionfirmwareqam8295pqca6574auqca6595auqca6678aq

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Memory Corruption when handling malformed request parameters in the fingerprint TA.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-120

Vendors

qualcomm

Products

qam8295p firmware, qam8295p, qca6574au firmware, qca6574au, qca6595au firmware, qca6595au, qca6678aq firmware, qca6678aq, qca6696 firmware, qca6696, sa6145p firmware, sa6145p

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.