Vulnerabilities > Qualcomm > Qca6391 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-06-03 CVE-2023-43537 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while handling T2LM Action Frame in WLAN Host.
network
low complexity
qualcomm CWE-125
7.5
2024-06-03 CVE-2023-43538 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
local
low complexity
qualcomm CWE-120
7.8
2024-06-03 CVE-2023-43551 Improper Authentication vulnerability in Qualcomm products
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
network
low complexity
qualcomm CWE-287
7.5
2024-06-03 CVE-2023-43555 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in Video while parsing mp2 clip with invalid section length.
network
low complexity
qualcomm CWE-125
7.5
2024-06-03 CVE-2023-43556 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Hypervisor when platform information mentioned is not aligned.
local
low complexity
qualcomm CWE-120
8.8
2024-05-06 CVE-2023-33119 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
local
high complexity
qualcomm CWE-367
7.0
2024-05-06 CVE-2023-43521 Use After Free vulnerability in Qualcomm products
Memory corruption when multiple listeners are being registered with the same file descriptor.
local
low complexity
qualcomm CWE-416
7.8
2024-05-06 CVE-2023-43524 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption when the bandpass filter order received from AHAL is not within the expected range.
local
low complexity
qualcomm CWE-120
7.8
2024-05-06 CVE-2023-43526 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while querying module parameters from Listen Sound model client in kernel from user space.
local
low complexity
qualcomm CWE-120
7.8
2024-05-06 CVE-2023-43530 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption in HLOS while checking for the storage type.
local
low complexity
qualcomm CWE-190
7.8