« Volver al listado

Qualcomm

Qualcomm Ipq8071 Firmware: vulnerabilidades y CVE

Qualcomm Ipq8071 Firmware tiene 100 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 13 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE100
Últimos 12 meses5
Críticas13
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-25275Alta (7.5)0.19%—17 sept 2026
Transient DOS when processing authentication frames with invalid FILS information element header lengths.
CVE-2025-47339Alta (7.8)0.08%—7 ene 2026
Memory corruption while deinitializing a HDCP session.
CVE-2025-47325Media (5.5)0.08%—18 dic 2025
Information disclosure while processing system calls with invalid parameters.
CVE-2025-27074Alta (7.8)0.08%—4 nov 2025
Memory corruption while processing a GP command response.
CVE-2025-27040Media (6.5)0.08%—9 oct 2025
Information disclosure may occur while processing the hypervisor log.
CVE-2025-21482Alta (7.1)0.08%—24 sept 2025
Cryptographic issue while performing RSA PKCS padding decoding.
CVE-2025-27066Alta (7.5)0.28%—6 ago 2025
Transient DOS while processing an ANQP message.
CVE-2024-33056Alta (7.8)0.10%—2 dic 2024
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
CVE-2024-21473Crítica (9.8)0.66%—1 abr 2024
Memory corruption while redirecting log file to any file location with any file name.
CVE-2023-33105Alta (7.5)0.75%—4 mar 2024
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
CVE-2023-43536Alta (7.5)0.32%—6 feb 2024
Transient DOS while parse fils IE with length equal to 1.
CVE-2023-28569Media (5.5)0.14%—7 nov 2023
Information disclosure in WLAN HAL while handling command through WMI interfaces.
CVE-2023-28563Media (5.5)0.14%—7 nov 2023
Information disclosure in IOE Firmware while handling WMI command.
CVE-2023-28573Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while parsing WMI command parameters.
CVE-2023-28567Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while handling command through WMI interfaces.
CVE-2023-28565Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while handling command streams through WMI interfaces.
CVE-2023-28564Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.
CVE-2023-28560Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
CVE-2023-28559Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.
CVE-2023-28549Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload.
CVE-2023-28544Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers.
CVE-2022-33275Alta (7.8)0.12%—5 sept 2023
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
CVE-2023-21628Alta (7.8)0.12%—6 jun 2023
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
CVE-2022-22076Media (5.5)0.11%—6 jun 2023
information disclosure due to cryptographic issue in Core during RPMB read request.
CVE-2022-40531Alta (7.8)0.12%—10 mar 2023
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
CVE-2022-40530Alta (7.8)0.13%—10 mar 2023
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
CVE-2022-25655Alta (7.8)0.12%—10 mar 2023
Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.
CVE-2022-40512Alta (7.5)0.42%—12 feb 2023
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
CVE-2022-33277Alta (7.8)0.12%—12 feb 2023
Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.
CVE-2022-33286Media (6.5)0.38%—9 ene 2023
Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1068 Exploitation for Privilege Escalation4
  2. T1059 Command and Scripting Interpreter2
  3. T1190 Exploit Public-Facing Application2
  4. T1499 Endpoint Denial of Service2
  5. T1552.001 Credentials In Files1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm