Vulnerabilities > Qualcomm > Qfw7124 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-24850 Improper Validation of Array Index vulnerability in Qualcomm products
Memory Corruption in HLOS while importing a cryptographic key into KeyMaster Trusted Application.
local
low complexity
qualcomm CWE-129
7.8
2023-10-03 CVE-2023-24853 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in HLOS while registering for key provisioning notify.
local
low complexity
qualcomm CWE-787
7.8
2023-10-03 CVE-2023-24855 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Modem while processing security related configuration before AS Security Exchange.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-10-03 CVE-2023-28539 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.
local
low complexity
qualcomm CWE-120
7.8
2023-10-03 CVE-2023-28540 Improper Authentication vulnerability in Qualcomm products
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
network
low complexity
qualcomm CWE-287
7.5
2023-10-03 CVE-2023-33026 Resource Exhaustion vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while parsing a NAN management frame.
network
low complexity
qualcomm CWE-400
7.5
2023-10-03 CVE-2023-33027 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while parsing rsn ies.
network
low complexity
qualcomm CWE-125
7.5
2023-10-03 CVE-2023-33028 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-10-03 CVE-2023-33029 Use After Free vulnerability in Qualcomm products
Memory corruption in DSP Service during a remote call from HLOS to DSP.
local
low complexity
qualcomm CWE-416
7.8
2023-10-03 CVE-2023-33035 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while invoking callback function of AFE from ADSP.
local
low complexity
qualcomm CWE-120
7.8