Vulnerabilities > Qualcomm > Qca6574Au Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-02-06 CVE-2023-43520 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
network
low complexity
qualcomm CWE-787
critical
9.8
2024-02-06 CVE-2023-43522 NULL Pointer Dereference vulnerability in Qualcomm products
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
network
low complexity
qualcomm CWE-476
7.5
2024-02-06 CVE-2023-43523 Reachable Assertion vulnerability in Qualcomm products
Transient DOS while processing 11AZ RTT management action frame received through OTA.
network
low complexity
qualcomm CWE-617
7.5
2024-02-06 CVE-2023-43533 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
network
low complexity
qualcomm CWE-125
7.5
2024-02-06 CVE-2023-43534 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
network
low complexity
qualcomm CWE-119
critical
9.8
2024-02-06 CVE-2023-43536 Unspecified vulnerability in Qualcomm products
Transient DOS while parse fils IE with length equal to 1.
network
low complexity
qualcomm
7.5
2024-02-06 CVE-2023-33046 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
local
high complexity
qualcomm CWE-367
7.0
2024-02-06 CVE-2023-33064 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in Audio when invoking callback function of ASM driver.
local
low complexity
qualcomm CWE-125
5.5
2024-02-06 CVE-2023-33065 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in Audio while accessing AVCS services from ADSP payload.
local
low complexity
qualcomm CWE-125
7.1
2024-01-02 CVE-2023-28583 Double Free vulnerability in Qualcomm products
Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address.
local
low complexity
qualcomm CWE-415
7.8