Qualcomm
Qualcomm Qcc2076 Firmware: vulnerabilidades y CVE
Qualcomm Qcc2076 Firmware tiene 111 vulnerabilidades publicadas, 8 de ellas en los últimos 12 meses. 10 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE111
Últimos 12 meses8
Críticas10
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-25275 | Alta (7.5) | 0.19% | — | 17 sept 2026 | Transient DOS when processing authentication frames with invalid FILS information element header lengths. |
| CVE-2026-24081 | Alta (7.4) | 0.10% | — | 17 sept 2026 | Transient DOS when processing a channel map with insufficient used channels and adaptive frequency hopping is fully enabled. |
| CVE-2026-25289 | Crítica (9.6) | 0.19% | — | 4 ago 2026 | Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values. |
| CVE-2025-47403 | Alta (7.5) | 0.22% | — | 4 may 2026 | Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming. |
| CVE-2026-21381 | Alta (7.5) | 0.15% | — | 6 abr 2026 | Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connection. |
| CVE-2026-21367 | Alta (7.5) | 0.20% | — | 6 abr 2026 | Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans. |
| CVE-2025-47402 | Media (6.5) | 0.16% | — | 2 feb 2026 | Transient DOS when processing a received frame with an excessively large authentication information element. |
| CVE-2025-47370 | Media (6.5) | 0.12% | — | 4 nov 2025 | Transient DOS when a remote device sends an invalid connection request during BT connectable LE scan. |
| CVE-2025-47318 | Alta (7.5) | 0.21% | — | 24 sept 2025 | Transient DOS while parsing the EPTM test control message to get the test pattern. |
| CVE-2025-27073 | Alta (7.5) | 0.21% | — | 6 ago 2025 | Transient DOS while creating NDP instance. |
| CVE-2025-27066 | Alta (7.5) | 0.28% | — | 6 ago 2025 | Transient DOS while processing an ANQP message. |
| CVE-2025-27065 | Alta (7.5) | 0.21% | — | 6 ago 2025 | Transient DOS while processing a frame with malformed shared-key descriptor. |
| CVE-2025-27057 | Alta (7.5) | 0.23% | — | 8 jul 2025 | Transient DOS while handling beacon frames with invalid IE header length. |
| CVE-2025-27051 | Alta (7.8) | 0.09% | — | 8 jul 2025 | Memory corruption while processing command message in WLAN Host. |
| CVE-2025-21446 | Alta (7.5) | 0.22% | — | 8 jul 2025 | Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests. |
| CVE-2025-21463 | Alta (7.5) | 0.23% | — | 3 jun 2025 | Transient DOS while processing the EHT operation IE in the received beacon frame. |
| CVE-2025-21459 | Alta (7.5) | 0.34% | — | 6 may 2025 | Transient DOS while parsing per STA profile in ML IE. |
| CVE-2025-21448 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Transient DOS may occur while parsing SSID in action frames. |
| CVE-2025-21441 | Alta (7.8) | 0.11% | — | 7 abr 2025 | Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. |
| CVE-2025-21440 | Alta (7.8) | 0.11% | — | 7 abr 2025 | Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. |
| CVE-2025-21435 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Transient DOS may occur while parsing extended IE in beacon. |
| CVE-2025-21434 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Transient DOS may occur while parsing EHT operation IE or EHT capability IE. |
| CVE-2025-21430 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session. |
| CVE-2025-21429 | Alta (7.5) | 0.26% | — | 7 abr 2025 | Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request. |
| CVE-2024-53027 | Alta (7.5) | 0.30% | — | 3 mar 2025 | Transient DOS may occur while processing the country IE. |
| CVE-2024-49840 | Alta (7.8) | 0.07% | — | 3 feb 2025 | Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality. |
| CVE-2024-49839 | Crítica (9.8) | 0.29% | — | 3 feb 2025 | Memory corruption during management frame processing due to mismatch in T2LM info element. |
| CVE-2024-49838 | Alta (7.5) | 0.31% | — | 3 feb 2025 | Information disclosure while parsing the OCI IE with invalid length. |
| CVE-2024-45561 | Alta (7.8) | 0.10% | — | 3 feb 2025 | Memory corruption while handling IOCTL call from user-space to set latency level. |
| CVE-2024-45558 | Alta (7.5) | 0.36% | — | 6 ene 2025 | Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.