Vulnerabilities > Qualcomm > Qcn9003 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-01 | CVE-2024-23368 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption when allocating and accessing an entry in an SMEM partition. | 7.8 |
2024-02-06 | CVE-2023-43513 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. | 7.8 |
2024-02-06 | CVE-2023-43522 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL. | 7.5 |
2024-02-06 | CVE-2023-43523 | Reachable Assertion vulnerability in Qualcomm products Transient DOS while processing 11AZ RTT management action frame received through OTA. | 7.5 |
2024-02-06 | CVE-2023-43536 | Unspecified vulnerability in Qualcomm products Transient DOS while parse fils IE with length equal to 1. | 7.5 |
2024-01-02 | CVE-2023-33062 | Unspecified vulnerability in Qualcomm products Transient DOS in WLAN Firmware while parsing a BTM request. | 7.5 |
2024-01-02 | CVE-2023-33109 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host. | 7.5 |
2024-01-02 | CVE-2023-43511 | Infinite Loop vulnerability in Qualcomm products Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. | 7.5 |
2023-12-05 | CVE-2023-33080 | Out-of-bounds Read vulnerability in Qualcomm products Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. | 7.5 |
2023-12-05 | CVE-2023-33088 | NULL Pointer Dereference vulnerability in Qualcomm products Memory corruption when processing cmd parameters while parsing vdev. | 7.8 |