« Back to list

Qualcomm

Qualcomm Qca9986 Firmware: vulnerabilities and CVEs

Qualcomm Qca9986 Firmware has 68 published vulnerabilities, 1 of them in the last 12 months. 7 are rated critical and 0 are listed by CISA as actively exploited.

CVEs68
Last 12 months1
Critical7
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2025-47339High (7.8)0.08%—Jan 7, 2026
Memory corruption while deinitializing a HDCP session.
CVE-2025-27066High (7.5)0.28%—Aug 6, 2025
Transient DOS while processing an ANQP message.
CVE-2025-21446High (7.5)0.22%—Jul 8, 2025
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2025-21448High (7.5)0.26%—Apr 7, 2025
Transient DOS may occur while parsing SSID in action frames.
CVE-2024-21473Critical (9.8)0.66%—Apr 1, 2024
Memory corruption while redirecting log file to any file location with any file name.
CVE-2023-33105High (7.5)0.75%—Mar 4, 2024
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
CVE-2023-28578High (7.8)0.12%—Mar 4, 2024
Memory corruption in Core Services while executing the command for removing a single event listener.
CVE-2023-43522High (7.5)0.32%—Feb 6, 2024
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
CVE-2023-43511High (7.5)0.32%—Jan 2, 2024
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
CVE-2023-33109High (7.5)0.34%—Jan 2, 2024
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
CVE-2023-33062High (7.5)0.34%—Jan 2, 2024
Transient DOS in WLAN Firmware while parsing a BTM request.
CVE-2023-33098High (7.5)0.47%—Dec 5, 2023
Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
CVE-2023-33089High (7.5)0.47%—Dec 5, 2023
Transient DOS when processing a NULL buffer while parsing WLAN vdev.
CVE-2023-33088High (7.8)0.16%—Dec 5, 2023
Memory corruption when processing cmd parameters while parsing vdev.
CVE-2023-33083Critical (9.8)0.61%—Dec 5, 2023
Memory corruption in WLAN Host while processing RRM beacon on the AP.
CVE-2023-33082Critical (9.8)0.53%—Dec 5, 2023
Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
CVE-2023-33080High (7.5)0.34%—Dec 5, 2023
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
CVE-2023-33047High (7.5)0.43%—Nov 7, 2023
Transient DOS in WLAN Firmware while parsing no-inherit IES.
CVE-2023-28569Medium (5.5)0.14%—Nov 7, 2023
Information disclosure in WLAN HAL while handling command through WMI interfaces.
CVE-2023-28563Medium (5.5)0.14%—Nov 7, 2023
Information disclosure in IOE Firmware while handling WMI command.
CVE-2023-33028Critical (9.8)0.54%—Oct 3, 2023
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
CVE-2023-33027High (7.5)0.32%—Oct 3, 2023
Transient DOS in WLAN Firmware while parsing rsn ies.
CVE-2023-33026High (7.5)0.32%—Oct 3, 2023
Transient DOS in WLAN Firmware while parsing a NAN management frame.
CVE-2023-33015High (7.5)0.38%—Sep 5, 2023
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.
CVE-2023-28573High (7.8)0.12%—Sep 5, 2023
Memory corruption in WLAN HAL while parsing WMI command parameters.
CVE-2023-28567High (7.8)0.12%—Sep 5, 2023
Memory corruption in WLAN HAL while handling command through WMI interfaces.
CVE-2023-28565High (7.8)0.12%—Sep 5, 2023
Memory corruption in WLAN HAL while handling command streams through WMI interfaces.
CVE-2023-28564High (7.8)0.12%—Sep 5, 2023
Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.
CVE-2023-28560High (7.8)0.12%—Sep 5, 2023
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
CVE-2023-28559High (7.8)0.12%—Sep 5, 2023
Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.

🎯 How it gets exploited (ATT&CK techniques)

  1. T1190 Exploit Public-Facing Application3
  2. T1499 Endpoint Denial of Service2
  3. T1059 Command and Scripting Interpreter1
  4. T1068 Exploitation for Privilege Escalation1
  5. T1499.004 Application or System Exploitation1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Qualcomm