Qualcomm
Qualcomm Qca6175a Firmware: vulnerabilidades y CVE
Qualcomm Qca6175a Firmware tiene 131 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 16 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE131
Últimos 12 meses0
Críticas16
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-47318 | Alta (7.5) | 0.21% | — | 24 sept 2025 | Transient DOS while parsing the EPTM test control message to get the test pattern. |
| CVE-2025-21430 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session. |
| CVE-2025-21429 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request. |
| CVE-2025-21428 | Alta (7.5) | 0.25% | — | 7 abr 2025 | Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request from the AP to establish a TSpec session. |
| CVE-2024-53027 | Alta (7.5) | 0.30% | — | 3 mar 2025 | Transient DOS may occur while processing the country IE. |
| CVE-2024-38408 | Crítica (9.1) | 0.14% | — | 4 nov 2024 | Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. |
| CVE-2024-33049 | Alta (7.5) | 0.32% | — | 7 oct 2024 | Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame. |
| CVE-2024-33051 | Alta (7.5) | 0.30% | — | 2 sept 2024 | Transient DOS while processing TIM IE from beacon frame as there is no check for IE length. |
| CVE-2024-33050 | Alta (7.5) | 0.30% | — | 2 sept 2024 | Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper. |
| CVE-2024-33014 | Alta (7.5) | 0.32% | — | 5 ago 2024 | Transient DOS while parsing ESP IE from beacon/probe response frame. |
| CVE-2024-33012 | Alta (7.5) | 0.28% | — | 5 ago 2024 | Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon. |
| CVE-2024-33011 | Alta (7.5) | 0.28% | — | 5 ago 2024 | Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero. |
| CVE-2024-33010 | Alta (7.5) | 0.28% | — | 5 ago 2024 | Transient DOS while parsing fragments of MBSSID IE from beacon frame. |
| CVE-2024-21467 | Alta (7.5) | 0.26% | — | 5 ago 2024 | Information disclosure while handling beacon probe frame during scan entry generation in client side. |
| CVE-2024-21459 | Alta (7.5) | 0.26% | — | 5 ago 2024 | Information disclosure while handling beacon or probe response frame in STA. |
| CVE-2023-43511 | Alta (7.5) | 0.32% | — | 2 ene 2024 | Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. |
| CVE-2023-33080 | Alta (7.5) | 0.34% | — | 5 dic 2023 | Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. |
| CVE-2023-28572 | Alta (8.8) | 0.40% | — | 7 nov 2023 | Memory corruption in WLAN HOST while processing the WLAN scan descriptor list. |
| CVE-2023-28553 | Media (5.5) | 0.14% | — | 7 nov 2023 | Information Disclosure in WLAN Host when processing WMI event command. |
| CVE-2023-28571 | Media (5.5) | 0.11% | — | 3 oct 2023 | Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan. |
| CVE-2023-28539 | Alta (7.8) | 0.11% | — | 3 oct 2023 | Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command. |
| CVE-2023-33020 | Alta (7.5) | 0.35% | — | 5 sept 2023 | Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE. |
| CVE-2023-33019 | Alta (7.5) | 0.35% | — | 5 sept 2023 | Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE. |
| CVE-2023-28565 | Alta (7.8) | 0.12% | — | 5 sept 2023 | Memory corruption in WLAN HAL while handling command streams through WMI interfaces. |
| CVE-2023-28564 | Alta (7.8) | 0.12% | — | 5 sept 2023 | Memory corruption in WLAN HAL while passing command parameters through WMI interfaces. |
| CVE-2023-28542 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Memory Corruption in WLAN HOST while fetching TX status information. |
| CVE-2023-28541 | Alta (7.8) | 0.12% | — | 4 jul 2023 | Memory Corruption in Data Modem while processing DMA buffer release event about CFR data. |
| CVE-2023-21656 | Alta (7.8) | 0.12% | — | 6 jun 2023 | Memory corruption in WLAN HOST while receiving an WMI event from firmware. |
| CVE-2023-21628 | Alta (7.8) | 0.12% | — | 6 jun 2023 | Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. |
| CVE-2022-40532 | Alta (7.8) | 0.12% | — | 13 abr 2023 | Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.