Qualcomm
Qualcomm Qca8072 Firmware: vulnerabilidades y CVE
Qualcomm Qca8072 Firmware tiene 173 vulnerabilidades publicadas, 6 de ellas en los últimos 12 meses. 18 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE173
Últimos 12 meses6
Críticas18
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-25275 | Alta (7.5) | 0.19% | — | 17 sept 2026 | Transient DOS when processing authentication frames with invalid FILS information element header lengths. |
| CVE-2025-47403 | Alta (7.5) | 0.22% | — | 4 may 2026 | Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming. |
| CVE-2025-47331 | Media (6.1) | 0.08% | — | 7 ene 2026 | Information disclosure while processing a firmware event. |
| CVE-2025-47325 | Media (5.5) | 0.08% | — | 18 dic 2025 | Information disclosure while processing system calls with invalid parameters. |
| CVE-2025-27074 | Alta (7.8) | 0.08% | — | 4 nov 2025 | Memory corruption while processing a GP command response. |
| CVE-2025-27040 | Media (6.5) | 0.08% | — | 9 oct 2025 | Information disclosure may occur while processing the hypervisor log. |
| CVE-2025-27073 | Alta (7.5) | 0.21% | — | 6 ago 2025 | Transient DOS while creating NDP instance. |
| CVE-2025-27066 | Alta (7.5) | 0.28% | — | 6 ago 2025 | Transient DOS while processing an ANQP message. |
| CVE-2025-21465 | Media (6.5) | 0.09% | — | 6 ago 2025 | Information disclosure while processing the hash segment in an MBN file. |
| CVE-2025-21464 | Media (6.5) | 0.09% | — | 6 ago 2025 | Information disclosure while reading data from an image using specified offset and size parameters. |
| CVE-2025-27061 | Alta (7.8) | 0.09% | — | 8 jul 2025 | Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. |
| CVE-2025-27042 | Alta (7.8) | 0.09% | — | 8 jul 2025 | Memory corruption while processing video packets received from video firmware. |
| CVE-2025-21446 | Alta (7.5) | 0.22% | — | 8 jul 2025 | Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests. |
| CVE-2025-21448 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Transient DOS may occur while parsing SSID in action frames. |
| CVE-2024-43046 | Media (5.5) | 0.11% | — | 7 abr 2025 | There may be information disclosure during memory re-allocation in TZ Secure OS. |
| CVE-2024-43057 | Alta (7.8) | 0.12% | — | 3 mar 2025 | Memory corruption while processing command in Glink linux. |
| CVE-2024-33056 | Alta (7.8) | 0.10% | — | 2 dic 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition continuously. |
| CVE-2024-33016 | Media (6.8) | 0.15% | — | 2 sept 2024 | memory corruption when an invalid firehose patch command is invoked. |
| CVE-2024-33014 | Alta (7.5) | 0.32% | — | 5 ago 2024 | Transient DOS while parsing ESP IE from beacon/probe response frame. |
| CVE-2024-23368 | Alta (7.8) | 0.10% | — | 1 jul 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition. |
| CVE-2024-21462 | Media (5.5) | 0.09% | — | 1 jul 2024 | Transient DOS while loading the TA ELF file. |
| CVE-2024-21473 | Crítica (9.8) | 0.66% | — | 1 abr 2024 | Memory corruption while redirecting log file to any file location with any file name. |
| CVE-2023-33105 | Alta (7.5) | 0.75% | — | 4 mar 2024 | Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number. |
| CVE-2023-28578 | Alta (7.8) | 0.12% | — | 4 mar 2024 | Memory corruption in Core Services while executing the command for removing a single event listener. |
| CVE-2023-43536 | Alta (7.5) | 0.32% | — | 6 feb 2024 | Transient DOS while parse fils IE with length equal to 1. |
| CVE-2023-43523 | Alta (7.5) | 0.32% | — | 6 feb 2024 | Transient DOS while processing 11AZ RTT management action frame received through OTA. |
| CVE-2023-43522 | Alta (7.5) | 0.32% | — | 6 feb 2024 | Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL. |
| CVE-2023-43513 | Alta (7.8) | 0.11% | — | 6 feb 2024 | Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. |
| CVE-2023-43511 | Alta (7.5) | 0.32% | — | 2 ene 2024 | Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. |
| CVE-2023-33109 | Alta (7.5) | 0.34% | — | 2 ene 2024 | Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.