« Volver al listado

Qualcomm

Qualcomm Qcn9003 Firmware: vulnerabilidades y CVE

Qualcomm Qcn9003 Firmware tiene 75 vulnerabilidades publicadas, 7 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE75
Últimos 12 meses7
Críticas4
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-25275Alta (7.5)0.19%—17 sept 2026
Transient DOS when processing authentication frames with invalid FILS information element header lengths.
CVE-2025-47403Alta (7.5)0.22%—4 may 2026
Transient DOS when processing a malformed Fast Transition response frame with an invalid header structure during wireless roaming.
CVE-2025-47331Media (6.1)0.08%—7 ene 2026
Information disclosure while processing a firmware event.
CVE-2025-27074Alta (7.8)0.08%—4 nov 2025
Memory corruption while processing a GP command response.
CVE-2025-27060Alta (8.8)0.09%—9 oct 2025
Memory corruption while performing SCM call with malformed inputs.
CVE-2025-27040Media (6.5)0.08%—9 oct 2025
Information disclosure may occur while processing the hypervisor log.
CVE-2025-27059Alta (8.8)0.09%—9 oct 2025
Memory corruption while performing SCM call.
CVE-2025-47318Alta (7.5)0.21%—24 sept 2025
Transient DOS while parsing the EPTM test control message to get the test pattern.
CVE-2025-27073Alta (7.5)0.21%—6 ago 2025
Transient DOS while creating NDP instance.
CVE-2025-27066Alta (7.5)0.28%—6 ago 2025
Transient DOS while processing an ANQP message.
CVE-2025-27061Alta (7.8)0.09%—8 jul 2025
Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware.
CVE-2025-27042Alta (7.8)0.09%—8 jul 2025
Memory corruption while processing video packets received from video firmware.
CVE-2025-21446Alta (7.5)0.22%—8 jul 2025
Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.
CVE-2025-21448Alta (7.5)0.26%—7 abr 2025
Transient DOS may occur while parsing SSID in action frames.
CVE-2024-38408Crítica (9.1)0.14%—4 nov 2024
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
CVE-2024-23368Alta (7.8)0.10%—1 jul 2024
Memory corruption when allocating and accessing an entry in an SMEM partition.
CVE-2024-21473Crítica (9.8)0.66%—1 abr 2024
Memory corruption while redirecting log file to any file location with any file name.
CVE-2023-33105Alta (7.5)0.75%—4 mar 2024
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
CVE-2023-28578Alta (7.8)0.12%—4 mar 2024
Memory corruption in Core Services while executing the command for removing a single event listener.
CVE-2023-43536Alta (7.5)0.32%—6 feb 2024
Transient DOS while parse fils IE with length equal to 1.
CVE-2023-43523Alta (7.5)0.32%—6 feb 2024
Transient DOS while processing 11AZ RTT management action frame received through OTA.
CVE-2023-43522Alta (7.5)0.32%—6 feb 2024
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
CVE-2023-43513Alta (7.8)0.11%—6 feb 2024
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
CVE-2023-43511Alta (7.5)0.32%—2 ene 2024
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
CVE-2023-33109Alta (7.5)0.34%—2 ene 2024
Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
CVE-2023-33062Alta (7.5)0.34%—2 ene 2024
Transient DOS in WLAN Firmware while parsing a BTM request.
CVE-2023-33098Alta (7.5)0.47%—5 dic 2023
Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
CVE-2023-33097Alta (7.5)0.47%—5 dic 2023
Transient DOS in WLAN Firmware while processing a FTMR frame.
CVE-2023-33089Alta (7.5)0.47%—5 dic 2023
Transient DOS when processing a NULL buffer while parsing WLAN vdev.
CVE-2023-33088Alta (7.8)0.16%—5 dic 2023
Memory corruption when processing cmd parameters while parsing vdev.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1190 Exploit Public-Facing Application8
  2. T1059 Command and Scripting Interpreter5
  3. T1068 Exploitation for Privilege Escalation5
  4. T1499.004 Application or System Exploitation4
  5. T1499 Endpoint Denial of Service3
  6. T1040 Network Sniffing1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm