Vulnerabilities > Qualcomm > Qca6678Aq Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-01-02 CVE-2023-43511 Infinite Loop vulnerability in Qualcomm products
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
network
low complexity
qualcomm CWE-835
7.5
2023-12-05 CVE-2023-28550 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
local
low complexity
qualcomm CWE-787
7.8
2023-12-05 CVE-2023-28587 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
local
low complexity
qualcomm CWE-787
7.8
2023-12-05 CVE-2023-33080 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
network
low complexity
qualcomm CWE-125
7.5
2023-12-05 CVE-2023-33088 NULL Pointer Dereference vulnerability in Qualcomm products
Memory corruption when processing cmd parameters while parsing vdev.
local
low complexity
qualcomm CWE-476
7.8
2023-12-05 CVE-2023-33089 NULL Pointer Dereference vulnerability in Qualcomm products
Transient DOS when processing a NULL buffer while parsing WLAN vdev.
network
low complexity
qualcomm CWE-476
7.5
2023-12-05 CVE-2023-33098 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
network
low complexity
qualcomm CWE-125
7.5
2023-11-07 CVE-2023-28572 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.
network
low complexity
qualcomm CWE-787
8.8
2023-11-07 CVE-2023-33047 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while parsing no-inherit IES.
network
low complexity
qualcomm CWE-125
7.5
2023-10-03 CVE-2023-28539 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.
local
low complexity
qualcomm CWE-120
7.8