Vulnerabilities > Qualcomm > Wcd9385 Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-02-06 CVE-2023-43523 Reachable Assertion vulnerability in Qualcomm products
Transient DOS while processing 11AZ RTT management action frame received through OTA.
network
low complexity
qualcomm CWE-617
7.5
2024-02-06 CVE-2023-43532 Release of Invalid Pointer or Reference vulnerability in Qualcomm products
Memory corruption while reading ACPI config through the user mode app.
local
low complexity
qualcomm CWE-763
7.8
2024-02-06 CVE-2023-43533 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
network
low complexity
qualcomm CWE-125
7.5
2024-02-06 CVE-2023-43534 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
network
low complexity
qualcomm CWE-119
critical
9.8
2024-02-06 CVE-2023-43535 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption when negative display IDs are sent as input while processing DISPLAYESCAPE event trigger.
local
low complexity
qualcomm CWE-129
7.8
2024-02-06 CVE-2023-43536 Unspecified vulnerability in Qualcomm products
Transient DOS while parse fils IE with length equal to 1.
network
low complexity
qualcomm
7.5
2024-02-06 CVE-2023-33046 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
local
high complexity
qualcomm CWE-367
7.0
2024-02-06 CVE-2023-33049 Memory Leak vulnerability in Qualcomm products
Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.
network
low complexity
qualcomm CWE-401
7.5
2024-02-06 CVE-2023-33057 Improper Input Validation vulnerability in Qualcomm products
Transient DOS in Multi-Mode Call Processor while processing UE policy container.
network
low complexity
qualcomm CWE-20
7.5
2024-02-06 CVE-2023-33058 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in Modem while processing SIB5.
network
low complexity
qualcomm CWE-125
critical
9.1