CVE-2024-53019
HIGHCVSS 8.2/10EPSS 0.20%
Last modified
CVE-2024-53019 is a high-severity vulnerability rated 8.2/10 on the CVSS scale. Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources.. EPSS estimates a 0.20% chance of exploitation in the next 30 days.
Description
Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | Fastconnect 6200 Firmware | All versions |
| Qualcomm | Fastconnect 6700 Firmware | All versions |
| Qualcomm | Fastconnect 6900 Firmware | All versions |
| Qualcomm | Fastconnect 7800 Firmware | All versions |
| Qualcomm | Qca6310 Firmware | All versions |
| Qualcomm | Qca6320 Firmware | All versions |
| Qualcomm | Qca6696 Firmware | All versions |
| Qualcomm | Qcm4490 Firmware | All versions |
| Qualcomm | Qcs4490 Firmware | All versions |
| Qualcomm | Qmp1000 Firmware | All versions |
| Qualcomm | Sa4150p Firmware | All versions |
| Qualcomm | Sa4155p Firmware | All versions |
| Qualcomm | Sa6155p Firmware | All versions |
| Qualcomm | Sa8155p Firmware | All versions |
| Qualcomm | Sa8195p Firmware | All versions |
| Qualcomm | Sd 8 Gen1 5g Firmware | All versions |
| Qualcomm | Sd835 Firmware | All versions |
| Qualcomm | Sdm429w Firmware | All versions |
| Qualcomm | Sm4635 Firmware | All versions |
| Qualcomm | Sm6650 Firmware | All versions |
| Qualcomm | Sm6650p Firmware | All versions |
| Qualcomm | Sm7635 Firmware | All versions |
| Qualcomm | Sm7675 Firmware | All versions |
| Qualcomm | Sm7675p Firmware | All versions |
| Qualcomm | Sm8550p Firmware | All versions |
| Qualcomm | Sm8635 Firmware | All versions |
| Qualcomm | Sm8635p Firmware | All versions |
| Qualcomm | Sm8650q Firmware | All versions |
| Qualcomm | Sm8735 Firmware | All versions |
| Qualcomm | Sm8750 Firmware | All versions |
| Qualcomm | Sm8750p Firmware | All versions |
| Qualcomm | Snapdragon 4 Gen 1 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 4 Gen 2 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 429 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 480 5g Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 480\+ 5g Mobile Platform \(Sm4350-Ac\) Firmware | All versions |
| Qualcomm | Snapdragon 695 5g Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8 Gen 1 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8 Gen 2 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8 Gen 3 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8\+ Gen 1 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 8\+ Gen 2 Mobile Platform Firmware | All versions |
| Qualcomm | Snapdragon 835 Mobile Pc Platform Firmware | All versions |
| Qualcomm | Snapdragon W5\+ Gen 1 Wearable Platform Firmware | All versions |
| Qualcomm | Sw5100 Firmware | All versions |
| Qualcomm | Sw5100p Firmware | All versions |
| Qualcomm | Talynplus Firmware | All versions |
| Qualcomm | Wcd9335 Firmware | All versions |
| Qualcomm | Wcd9340 Firmware | All versions |
| Qualcomm | Wcd9341 Firmware | All versions |
Showing 50 of 81 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-53019?
Information disclosure may occur while decoding the RTP packet with improper header length for number of contributing sources.
How severe is CVE-2024-53019?
CVE-2024-53019 has a CVSS score of 8.2/10 (HIGH severity). The EPSS model estimates a 0.20% probability of exploitation in the next 30 days.
How do I fix CVE-2024-53019?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-53013Memory corruption may occur while processing voice call regi…6.6
- CVE-2024-53014Memory corruption may occur while validating ports and chan…7.8
- CVE-2024-53015Memory corruption while processing IOCTL command to handle b…6.6
- CVE-2024-53016Memory corruption while processing I2C settings in Camera dr…6.6
- CVE-2024-53017Memory corruption while handling test pattern generator IOCT…6.6
- CVE-2024-53018Memory corruption may occur while processing the OIS packet …6.6
- CVE-2024-5302Kofax Power PDF PDF File Parsing Out-Of-Bounds Write Remote …7.8
- CVE-2024-53020Information disclosure may occur while decoding the RTP pack…8.2
- CVE-2024-53021Information disclosure may occur while processing goodbye RT…8.2
- CVE-2024-53022Memory corruption may occur during communication between pri…7.8
- CVE-2024-53023Memory corruption may occur while accessing a variable durin…7.8
- CVE-2024-53024Memory corruption in display driver while detaching a device…7.8
Are you affected by CVE-2024-53019?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
