← Back to search

CVE-2026-24083

7.8 HIGH

Published 2026-08-04 · Updated 2026-08-06

AI risk analysis

Summary
The flaw allows memory corruption when processing invalid IOCTL requests, potentially leading to arbitrary code execution.
Exploitability
Exploitation requires specific invalid arguments and kernel-level access; difficult but not impossible.
Blast radius
If exploited, could lead to full system compromise affecting devices using affected firmware.
Prioritized remediation
Update to the latest firmware versions immediately to patch the vulnerability.
memory-corruptionkernel-privilegefirmware-update

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Memory Corruption while processing IOCTL device driver requests with invalid arguments.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-822

Vendors

qualcomm

Products

qam8295p firmware, qam8295p, qca6696 firmware, qca6696, sa8295p firmware, sa8295p

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.