« Volver al listado

Qualcomm

Qualcomm Qca6777aq Firmware: vulnerabilidades y CVE

Qualcomm Qca6777aq Firmware tiene 40 vulnerabilidades publicadas, 10 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE40
Últimos 12 meses10
Críticas4
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-25275Alta (7.5)0.19%—17 sept 2026
Transient DOS when processing authentication frames with invalid FILS information element header lengths.
CVE-2026-25289Crítica (9.6)0.19%—4 ago 2026
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
CVE-2026-24077Media (6.5)0.17%—4 ago 2026
Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.
CVE-2025-59609Media (5.5)0.09%—1 jun 2026
Information Disclosure when processing advertisement frames with malformed MBSSID elements of insufficient length.
CVE-2025-47403Alta (7.5)0.22%—4 may 2026
Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.
CVE-2025-47401Alta (7.5)0.22%—4 may 2026
Transient DOS when processing target power rate tables during channel configuration.
CVE-2026-21381Alta (7.5)0.15%—6 abr 2026
Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connection.
CVE-2026-21367Alta (7.5)0.20%—6 abr 2026
Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.
CVE-2025-47402Media (6.5)0.16%—2 feb 2026
Transient DOS when processing a received frame with an excessively large authentication information element.
CVE-2025-47370Media (6.5)0.12%—4 nov 2025
Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan.
CVE-2025-27073Alta (7.5)0.21%—6 ago 2025
Transient DOS while creating NDP instance.
CVE-2025-27066Alta (7.5)0.28%—6 ago 2025
Transient DOS while processing an ANQP message.
CVE-2025-27065Alta (7.5)0.21%—6 ago 2025
Transient DOS while processing a frame with malformed shared-key descriptor.
CVE-2025-27057Alta (7.5)0.23%—8 jul 2025
Transient DOS while handling beacon frames with invalid IE header length.
CVE-2025-21446Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2025-21463Alta (7.5)0.23%—3 jun 2025
Transient DOS while processing the EHT operation IE in the received beacon frame.
CVE-2025-21459Alta (7.5)0.34%—6 may 2025
Transient DOS while parsing per STA profile in ML IE.
CVE-2025-21448Alta (7.5)0.26%—7 abr 2025
Transient DOS may occur while parsing SSID in action frames.
CVE-2025-21435Alta (7.5)0.26%—7 abr 2025
Transient DOS may occur while parsing extended IE in beacon.
CVE-2025-21434Alta (7.5)0.26%—7 abr 2025
Transient DOS may occur while parsing EHT operation IE or EHT capability IE.
CVE-2025-21430Alta (7.5)0.26%—7 abr 2025
Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.
CVE-2025-21429Alta (7.5)0.26%—7 abr 2025
Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.
CVE-2024-53027Alta (7.5)0.30%—3 mar 2025
Transient DOS may occur while processing the country IE.
CVE-2024-49839Crítica (9.8)0.29%—3 feb 2025
Memory corruption during management frame processing due to mismatch in T2LM info element.
CVE-2024-49838Alta (7.5)0.31%—3 feb 2025
Information disclosure while parsing the OCI IE with invalid length.
CVE-2024-45571Alta (7.8)0.10%—3 feb 2025
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
CVE-2024-45569Crítica (9.8)0.58%—3 feb 2025
Memory corruption while parsing the ML IE due to invalid frame content.
CVE-2024-45558Alta (7.5)0.36%—6 ene 2025
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
CVE-2024-33063Alta (7.5)0.26%—2 dic 2024
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present.
CVE-2024-33056Alta (7.8)0.10%—2 dic 2024
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1190 Exploit Public-Facing Application26
  2. T1499.004 Application or System Exploitation17
  3. T1499 Endpoint Denial of Service5
  4. T1059 Command and Scripting Interpreter4
  5. T1068 Exploitation for Privilege Escalation2
  6. T1005 Data from Local System1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm