Vulnerabilities > Qualcomm > Snapdragon 8 GEN 2 Mobile Platform Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-02-06 CVE-2023-43520 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
network
low complexity
qualcomm CWE-787
critical
9.8
2024-02-06 CVE-2023-43522 NULL Pointer Dereference vulnerability in Qualcomm products
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
network
low complexity
qualcomm CWE-476
7.5
2024-02-06 CVE-2023-43523 Reachable Assertion vulnerability in Qualcomm products
Transient DOS while processing 11AZ RTT management action frame received through OTA.
network
low complexity
qualcomm CWE-617
7.5
2024-02-06 CVE-2023-43533 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
network
low complexity
qualcomm CWE-125
7.5
2024-02-06 CVE-2023-43534 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
network
low complexity
qualcomm CWE-119
critical
9.8
2024-02-06 CVE-2023-43536 Unspecified vulnerability in Qualcomm products
Transient DOS while parse fils IE with length equal to 1.
network
low complexity
qualcomm
7.5
2024-02-06 CVE-2023-33046 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
local
high complexity
qualcomm CWE-367
7.0
2024-02-06 CVE-2023-33049 Memory Leak vulnerability in Qualcomm products
Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.
network
low complexity
qualcomm CWE-401
7.5
2024-02-06 CVE-2023-33057 Improper Input Validation vulnerability in Qualcomm products
Transient DOS in Multi-Mode Call Processor while processing UE policy container.
network
low complexity
qualcomm CWE-20
7.5
2024-02-06 CVE-2023-33058 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in Modem while processing SIB5.
network
low complexity
qualcomm CWE-125
critical
9.1