« Volver al listado

Qualcomm

Qualcomm Qca2064 Firmware: vulnerabilidades y CVE

Qualcomm Qca2064 Firmware tiene 82 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 7 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE82
Últimos 12 meses3
Críticas7
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-25275Alta (7.5)0.19%—17 sept 2026
Transient DOS when processing authentication frames with invalid FILS information element header lengths.
CVE-2026-24076Media (6.7)0.11%—4 ago 2026
Memory Corruption when processing registry values with incorrect types using a direct query method.
CVE-2025-47401Alta (7.5)0.22%—4 may 2026
Transient DOS when processing target power rate tables during channel configuration.
CVE-2025-27066Alta (7.5)0.28%—6 ago 2025
Transient DOS while processing an ANQP message.
CVE-2025-21446Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2025-21448Alta (7.5)0.26%—7 abr 2025
Transient DOS may occur while parsing SSID in action frames.
CVE-2025-21441Alta (7.8)0.11%—7 abr 2025
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
CVE-2025-21440Alta (7.8)0.11%—7 abr 2025
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
CVE-2024-45542Alta (7.8)0.13%—6 ene 2025
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
CVE-2024-45541Alta (7.8)0.11%—6 ene 2025
Memory corruption when IOCTL call is invoked from user-space to read board data.
CVE-2024-43053Alta (7.8)0.10%—2 dic 2024
Memory corruption while invoking IOCTL calls from user space to read WLAN target diagnostic information.
CVE-2024-43050Alta (7.8)0.10%—2 dic 2024
Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
CVE-2024-38408Crítica (9.1)0.14%—4 nov 2024
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
CVE-2024-33051Alta (7.5)0.30%—2 sept 2024
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
CVE-2024-23364Alta (7.5)0.30%—2 sept 2024
Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of a beacon frame that is received from over-the-air (OTA).
CVE-2023-43536Alta (7.5)0.32%—6 feb 2024
Transient DOS while parse fils IE with length equal to 1.
CVE-2023-43533Alta (7.5)0.32%—6 feb 2024
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
CVE-2023-43522Alta (7.5)0.32%—6 feb 2024
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
CVE-2023-43511Alta (7.5)0.32%—2 ene 2024
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
CVE-2023-33109Alta (7.5)0.34%—2 ene 2024
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
CVE-2023-33062Alta (7.5)0.34%—2 ene 2024
Transient DOS in WLAN Firmware while parsing a BTM request.
CVE-2023-33098Alta (7.5)0.47%—5 dic 2023
Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
CVE-2023-33089Alta (7.5)0.47%—5 dic 2023
Transient DOS when processing a NULL buffer while parsing WLAN vdev.
CVE-2023-33088Alta (7.8)0.16%—5 dic 2023
Memory corruption when processing cmd parameters while parsing vdev.
CVE-2023-33080Alta (7.5)0.34%—5 dic 2023
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
CVE-2023-28587Alta (7.8)0.16%—5 dic 2023
Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
CVE-2023-28550Alta (7.8)0.12%—5 dic 2023
Memory corruption in MPP performance while accessing DSM watermark using external memory address.
CVE-2023-33047Alta (7.5)0.43%—7 nov 2023
Transient DOS in WLAN Firmware while parsing no-inherit IES.
CVE-2023-33028Crítica (9.8)0.54%—3 oct 2023
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
CVE-2023-33027Alta (7.5)0.32%—3 oct 2023
Transient DOS in WLAN Firmware while parsing rsn ies.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1059 Command and Scripting Interpreter6
  2. T1068 Exploitation for Privilege Escalation6
  3. T1190 Exploit Public-Facing Application6
  4. T1499 Endpoint Denial of Service3
  5. T1499.004 Application or System Exploitation2
  6. T1040 Network Sniffing1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm