Qualcomm
Qualcomm Ipq5018 Firmware: vulnerabilidades y CVE
Qualcomm Ipq5018 Firmware tiene 107 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 17 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE107
Últimos 12 meses0
Críticas17
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-21664 | Alta (7.8) | 0.12% | — | 5 sept 2023 | Memory Corruption in Core Platform while printing the response buffer in log. |
| CVE-2023-21662 | Alta (7.8) | 0.12% | — | 5 sept 2023 | Memory corruption in Core Platform while printing the response buffer in log. |
| CVE-2022-40531 | Alta (7.8) | 0.12% | — | 10 mar 2023 | Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message. |
| CVE-2022-40530 | Alta (7.8) | 0.13% | — | 10 mar 2023 | Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase. |
| CVE-2022-40527 | Alta (7.5) | 0.41% | — | 10 mar 2023 | Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM. |
| CVE-2022-33309 | Alta (7.5) | 0.41% | — | 10 mar 2023 | Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes. |
| CVE-2022-25655 | Alta (7.8) | 0.12% | — | 10 mar 2023 | Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload. |
| CVE-2022-40514 | Crítica (9.8) | 0.47% | — | 12 feb 2023 | Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame. |
| CVE-2022-40513 | Alta (7.5) | 0.41% | — | 12 feb 2023 | Transient DOS due to uncontrolled resource consumption in WLAN firmware when peer is freed in non qos state. |
| CVE-2022-40512 | Alta (7.5) | 0.42% | — | 12 feb 2023 | Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. |
| CVE-2022-40502 | Alta (7.5) | 0.42% | — | 12 feb 2023 | Transient DOS due to improper input validation in WLAN Host. |
| CVE-2022-34146 | Alta (7.5) | 0.42% | — | 12 feb 2023 | Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation. |
| CVE-2022-34145 | Alta (7.5) | 0.42% | — | 12 feb 2023 | Transient DOS due to buffer over-read in WLAN Host while parsing frame information. |
| CVE-2022-33306 | Alta (7.5) | 0.42% | — | 12 feb 2023 | Transient DOS due to buffer over-read in WLAN while processing an incoming management frame with incorrectly filled IEs. |
| CVE-2022-33279 | Crítica (9.8) | 0.61% | — | 12 feb 2023 | Memory corruption due to stack based buffer overflow in WLAN having invalid WNM frame length. |
| CVE-2022-33277 | Alta (7.8) | 0.12% | — | 12 feb 2023 | Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command. |
| CVE-2022-33271 | Alta (7.5) | 0.38% | — | 12 feb 2023 | Information disclosure due to buffer over-read in WLAN while parsing NMF frame. |
| CVE-2022-33243 | Alta (7.8) | 0.11% | — | 12 feb 2023 | Memory corruption due to improper access control in Qualcomm IPC. |
| CVE-2022-33286 | Media (6.5) | 0.38% | — | 9 ene 2023 | Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames. |
| CVE-2022-33285 | Media (6.5) | 0.38% | — | 9 ene 2023 | Transient DOS due to buffer over-read in WLAN while parsing WLAN CSA action frames. |
| CVE-2022-33284 | Media (6.5) | 0.35% | — | 9 ene 2023 | Information disclosure due to buffer over-read in WLAN while parsing BTM action frame. |
| CVE-2022-33283 | Media (6.5) | 0.35% | — | 9 ene 2023 | Information disclosure due to buffer over-read in WLAN while WLAN frame parsing due to missing frame length check. |
| CVE-2022-33276 | Alta (7.8) | 0.12% | — | 9 ene 2023 | Memory corruption due to buffer copy without checking size of input in modem while receiving WMI_REQUEST_STATS_CMDID command. |
| CVE-2022-33253 | Media (5.5) | 0.22% | — | 9 ene 2023 | Transient DOS due to buffer over-read in WLAN while parsing corrupted NAN frames. |
| CVE-2022-33252 | Media (5.5) | 0.24% | — | 9 ene 2023 | Information disclosure due to buffer over-read in WLAN while handling IBSS beacons frame. |
| CVE-2022-25722 | Media (5.5) | 0.11% | — | 9 ene 2023 | Information exposure in DSP services due to improper handling of freeing memory |
| CVE-2022-33238 | Alta (7.5) | 0.42% | — | 13 dic 2022 | Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming FTM frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,… |
| CVE-2022-33235 | Alta (7.5) | 0.39% | — | 13 dic 2022 | Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics… |
| CVE-2022-25677 | Alta (7.8) | 0.13% | — | 13 dic 2022 | Memory corruption in diag due to use after free while processing dci packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon… |
| CVE-2022-33239 | Alta (7.5) | 0.41% | — | 15 nov 2022 | Transient DOS due to loop with unreachable exit condition in WLAN firmware while parsing IPV6 extension header. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics… |