CVE-2024-21480
📋 TL;DR
This vulnerability allows memory corruption when processing audio files with large input buffers, potentially leading to arbitrary code execution. It affects Qualcomm audio processing components across multiple device platforms. Attackers could exploit this by crafting malicious audio files.
💻 Affected Systems
- Qualcomm audio processing components
- Devices with Qualcomm chipsets
📦 What is this software?
Snapdragon 4 Gen 1 Mobile Firmware by Qualcomm
View all CVEs affecting Snapdragon 4 Gen 1 Mobile Firmware →
Snapdragon 4 Gen 2 Mobile Firmware by Qualcomm
View all CVEs affecting Snapdragon 4 Gen 2 Mobile Firmware →
Snapdragon 480 5g Mobile Firmware by Qualcomm
Snapdragon 480 5g Mobile Firmware by Qualcomm
Snapdragon 680 4g Mobile Firmware by Qualcomm
Snapdragon 685 4g Mobile Firmware by Qualcomm
Snapdragon 695 5g Mobile Firmware by Qualcomm
Snapdragon 8 Gen 1 Mobile Firmware by Qualcomm
View all CVEs affecting Snapdragon 8 Gen 1 Mobile Firmware →
Snapdragon 8 Gen 1 Mobile Firmware by Qualcomm
View all CVEs affecting Snapdragon 8 Gen 1 Mobile Firmware →
Snapdragon 8 Gen 2 Mobile Firmware by Qualcomm
View all CVEs affecting Snapdragon 8 Gen 2 Mobile Firmware →
Snapdragon 8 Gen 2 Mobile Firmware by Qualcomm
View all CVEs affecting Snapdragon 8 Gen 2 Mobile Firmware →
Snapdragon 8 Gen 3 Mobile Firmware by Qualcomm
View all CVEs affecting Snapdragon 8 Gen 3 Mobile Firmware →
Snapdragon Auto 5g Modem Rf Gen 2 Firmware by Qualcomm
View all CVEs affecting Snapdragon Auto 5g Modem Rf Gen 2 Firmware →
Snapdragon W5\+ Gen 1 Wearable Firmware by Qualcomm
View all CVEs affecting Snapdragon W5\+ Gen 1 Wearable Firmware →
Snapdragon X35 5g Modem Rf Firmware by Qualcomm
View all CVEs affecting Snapdragon X35 5g Modem Rf Firmware →
Snapdragon X65 5g Modem Rf Firmware by Qualcomm
View all CVEs affecting Snapdragon X65 5g Modem Rf Firmware →
Snapdragon X72 5g Modem Rf Firmware by Qualcomm
View all CVEs affecting Snapdragon X72 5g Modem Rf Firmware →
Snapdragon X75 5g Modem Rf Firmware by Qualcomm
View all CVEs affecting Snapdragon X75 5g Modem Rf Firmware →
⚠️ Risk & Real-World Impact
Worst Case
Remote code execution with kernel privileges leading to complete device compromise
Likely Case
Application crash or denial of service affecting audio functionality
If Mitigated
Contained crash within audio service without privilege escalation
🎯 Exploit Status
Requires user to open malicious audio file; exploitation depends on memory layout
🛠️ Fix & Mitigation
✅ Official Fix
Patch Version: Qualcomm security updates from May 2024
Vendor Advisory: https://docs.qualcomm.com/product/publicresources/securitybulletin/may-2024-bulletin.html
Restart Required: Yes
Instructions:
1. Check with device manufacturer for security updates. 2. Apply Qualcomm May 2024 security patches. 3. Reboot device after update.
🔧 Temporary Workarounds
Restrict audio file sources
allOnly allow audio files from trusted sources
Disable unnecessary audio processing
linuxReduce attack surface by disabling unused audio features
🧯 If You Can't Patch
- Implement application sandboxing to contain potential exploitation
- Use security monitoring to detect abnormal audio processing behavior
🔍 How to Verify
Check if Vulnerable:
Check Qualcomm chipset version and compare with May 2024 security bulletin
Check Version:
On Android: adb shell getprop ro.boot.qcom.version
Verify Fix Applied:
Verify Qualcomm security patch level includes May 2024 updates
📡 Detection & Monitoring
Log Indicators:
- Audio service crashes
- Memory corruption errors in system logs
Network Indicators:
- Unusual audio file downloads from untrusted sources
SIEM Query:
process:audio* AND (event:crash OR event:memory_corruption)