Vulnerabilities > Qualcomm > Wcn3610 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-02-06 | CVE-2023-33068 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption in Audio while processing IIR config data from AFE calibration block. | 7.8 |
2024-02-06 | CVE-2023-33069 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption in Audio while processing the calibration data returned from ACDB loader. | 7.8 |
2024-02-06 | CVE-2023-33077 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption in HLOS while converting from authorization token to HIDL vector. | 7.8 |
2024-02-06 | CVE-2023-33065 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure in Audio while accessing AVCS services from ADSP payload. | 7.1 |
2024-01-02 | CVE-2023-28583 | Double Free vulnerability in Qualcomm products Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address. | 7.8 |
2024-01-02 | CVE-2023-33030 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in HLOS while running playready use-case. | 7.8 |
2024-01-02 | CVE-2023-33033 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in Audio during playback with speaker protection. | 7.8 |
2024-01-02 | CVE-2023-33110 | Race Condition vulnerability in Qualcomm products The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption. | 7.0 |
2024-01-02 | CVE-2023-33114 | Use After Free vulnerability in Qualcomm products Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time. | 7.8 |
2024-01-02 | CVE-2023-43511 | Infinite Loop vulnerability in Qualcomm products Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. | 7.5 |