« Volver al listado

Qualcomm

Qualcomm Immersive Home 326 Firmware: vulnerabilidades y CVE

Qualcomm Immersive Home 326 Firmware tiene 25 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 5 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE25
Últimos 12 meses2
Críticas5
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2025-47403Alta (7.5)0.22%—4 may 2026
Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.
CVE-2025-47401Alta (7.5)0.22%—4 may 2026
Transient DOS when processing target power rate tables during channel configuration.
CVE-2025-27061Alta (7.8)0.09%—8 jul 2025
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
CVE-2025-27057Alta (7.5)0.23%—8 jul 2025
Transient DOS while handling beacon frames with invalid IE header length.
CVE-2025-27043Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing manipulated payload in video firmware.
CVE-2025-27042Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing video packets received from video firmware.
CVE-2024-43057Alta (7.8)0.12%—3 mar 2025
Memory corruption while processing command in Glink linux.
CVE-2024-49839Crítica (9.8)0.29%—3 feb 2025
Memory corruption during management frame processing due to mismatch in T2LM info element.
CVE-2024-45571Alta (7.8)0.10%—3 feb 2025
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
CVE-2024-45569Crítica (9.8)0.58%—3 feb 2025
Memory corruption while parsing the ML IE due to invalid frame content.
CVE-2024-45558Alta (7.5)0.36%—6 ene 2025
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVE-2024-33057Alta (7.5)0.30%—2 sept 2024
Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.
CVE-2024-33050Alta (7.5)0.30%—2 sept 2024
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
CVE-2024-33048Alta (7.5)0.30%—2 sept 2024
Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.
CVE-2024-33045Alta (7.8)0.12%—2 sept 2024
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
CVE-2024-23363Alta (7.5)0.26%—3 jun 2024
Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame.
CVE-2023-43537Alta (7.5)0.21%—3 jun 2024
Information disclosure while handling T2LM Action Frame in WLAN Host.
CVE-2024-21477Alta (7.5)0.32%—6 may 2024
Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.
CVE-2024-21473Crítica (9.8)0.66%—1 abr 2024
Memory corruption while redirecting log file to any file location with any file name.
CVE-2023-43553Crítica (9.8)0.35%—4 mar 2024
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
CVE-2023-43552Crítica (9.8)0.35%—4 mar 2024
Memory corruption while processing MBSSID beacon containing several subelement IE.
CVE-2023-43549Alta (7.8)0.11%—4 mar 2024
Memory corruption while processing TPC target power table in FTM TPC.
CVE-2023-43539Alta (7.5)0.32%—4 mar 2024
Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.
CVE-2023-33105Alta (7.5)0.75%—4 mar 2024
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
CVE-2023-28578Alta (7.8)0.12%—4 mar 2024
Memory corruption in Core Services while executing the command for removing a single event listener.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1059 Command and Scripting Interpreter7
  2. T1190 Exploit Public-Facing Application6
  3. T1068 Exploitation for Privilege Escalation5
  4. T1499.004 Application or System Exploitation3
  5. T1499 Endpoint Denial of Service1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm