« Volver al listado

Qualcomm

Qualcomm Immersive Home 318 Firmware: vulnerabilidades y CVE

Qualcomm Immersive Home 318 Firmware tiene 36 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 5 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE36
Últimos 12 meses1
Críticas5
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2025-47403Alta (7.5)0.22%—4 may 2026
Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.
CVE-2025-27061Alta (7.8)0.09%—8 jul 2025
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
CVE-2025-27057Alta (7.5)0.23%—8 jul 2025
Transient DOS while handling beacon frames with invalid IE header length.
CVE-2025-27042Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing video packets received from video firmware.
CVE-2025-21454Alta (7.5)0.22%—8 jul 2025
Transient DOS while processing received beacon frame.
CVE-2025-21449Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur while processing malformed length field in SSID IEs.
CVE-2025-21446Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2024-43057Alta (7.8)0.12%—3 mar 2025
Memory corruption while processing command in Glink linux.
CVE-2024-49839Crítica (9.8)0.29%—3 feb 2025
Memory corruption during management frame processing due to mismatch in T2LM info element.
CVE-2024-45571Alta (7.8)0.10%—3 feb 2025
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
CVE-2024-45569Crítica (9.8)0.58%—3 feb 2025
Memory corruption while parsing the ML IE due to invalid frame content.
CVE-2024-45558Alta (7.5)0.36%—6 ene 2025
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVE-2024-33057Alta (7.5)0.30%—2 sept 2024
Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.
CVE-2024-33050Alta (7.5)0.30%—2 sept 2024
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
CVE-2024-33048Alta (7.5)0.30%—2 sept 2024
Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.
CVE-2024-23363Alta (7.5)0.26%—3 jun 2024
Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame.
CVE-2023-43537Alta (7.5)0.21%—3 jun 2024
Information disclosure while handling T2LM Action Frame in WLAN Host.
CVE-2024-21477Alta (7.5)0.32%—6 may 2024
Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.
CVE-2024-21473Crítica (9.8)0.66%—1 abr 2024
Memory corruption while redirecting log file to any file location with any file name.
CVE-2023-43553Crítica (9.8)0.35%—4 mar 2024
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
CVE-2023-43552Crítica (9.8)0.35%—4 mar 2024
Memory corruption while processing MBSSID beacon containing several subelement IE.
CVE-2023-43549Alta (7.8)0.11%—4 mar 2024
Memory corruption while processing TPC target power table in FTM TPC.
CVE-2023-43539Alta (7.5)0.32%—4 mar 2024
Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.
CVE-2023-33105Alta (7.5)0.75%—4 mar 2024
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
CVE-2023-28578Alta (7.8)0.12%—4 mar 2024
Memory corruption in Core Services while executing the command for removing a single event listener.
CVE-2023-33016Alta (7.5)0.38%—5 sept 2023
Transient DOS in WLAN firmware while parsing MLO (multi-link operation).
CVE-2023-33015Alta (7.5)0.38%—5 sept 2023
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.
CVE-2023-28573Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while parsing WMI command parameters.
CVE-2023-28567Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while handling command through WMI interfaces.
CVE-2023-28565Alta (7.8)0.12%—5 sept 2023
Memory corruption in WLAN HAL while handling command streams through WMI interfaces.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1190 Exploit Public-Facing Application8
  2. T1059 Command and Scripting Interpreter6
  3. T1068 Exploitation for Privilege Escalation4
  4. T1499.004 Application or System Exploitation4
  5. T1499 Endpoint Denial of Service2

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm