Qualcomm
Qualcomm Wcn685x-1 Firmware: vulnerabilidades y CVE
Qualcomm Wcn685x-1 Firmware tiene 93 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 5 son críticas y 1 figuran en el catálogo de explotación activa de CISA.
CVE93
Últimos 12 meses0
Críticas5
Explotadas activamente1
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-33063 | Alta (7.8) | 0.67% | ⚠ Explotación activa | 5 dic 2023 | Memory corruption in DSP Services during a remote call from HLOS to DSP. |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-33087 | Alta (7.8) | 0.16% | — | 5 dic 2023 | Memory corruption in Core while processing RX intent request. |
| CVE-2023-33083 | Crítica (9.8) | 0.61% | — | 5 dic 2023 | Memory corruption in WLAN Host while processing RRM beacon on the AP. |
| CVE-2023-33082 | Crítica (9.8) | 0.53% | — | 5 dic 2023 | Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE. |
| CVE-2023-33081 | Alta (7.5) | 0.47% | — | 5 dic 2023 | Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast. |
| CVE-2023-33080 | Alta (7.5) | 0.34% | — | 5 dic 2023 | Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame. |
| CVE-2023-33079 | Alta (7.8) | 0.16% | — | 5 dic 2023 | Memory corruption in Audio while running invalid audio recording from ADSP. |
| CVE-2023-33063 | Alta (7.8) | 0.67% | ⚠ Explotación activa | 5 dic 2023 | Memory corruption in DSP Services during a remote call from HLOS to DSP. |
| CVE-2023-33054 | Crítica (9.1) | 0.36% | — | 5 dic 2023 | Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data. |
| CVE-2023-33053 | Alta (7.8) | 0.14% | — | 5 dic 2023 | Memory corruption in Kernel while parsing metadata. |
| CVE-2023-33044 | Alta (7.5) | 0.52% | — | 5 dic 2023 | Transient DOS in Data modem while handling TLB control messages from the Network. |
| CVE-2023-33043 | Alta (7.5) | 0.52% | — | 5 dic 2023 | Transient DOS in Modem when a Beam switch request is made with a non-configured BWP. |
| CVE-2023-33042 | Alta (7.5) | 0.61% | — | 5 dic 2023 | Transient DOS in Modem after RRC Setup message is received. |
| CVE-2023-33041 | Alta (7.5) | 0.47% | — | 5 dic 2023 | Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids. |
| CVE-2023-33024 | Alta (7.8) | 0.16% | — | 5 dic 2023 | Memory corruption while sending SMS from AP firmware. |
| CVE-2023-33022 | Alta (7.8) | 0.16% | — | 5 dic 2023 | Memory corruption in HLOS while invoking IOCTL calls from user-space. |
| CVE-2023-33018 | Alta (7.8) | 0.11% | — | 5 dic 2023 | Memory corruption while using the UIM diag command to get the operators name. |
| CVE-2023-33017 | Alta (7.8) | 0.16% | — | 5 dic 2023 | Memory corruption in Boot while running a ListVars test in UEFI Menu during boot. |
| CVE-2023-33074 | Alta (7.8) | 0.14% | — | 7 nov 2023 | Memory corruption in Audio when SSR event is triggered after music playback is stopped. |
| CVE-2023-33061 | Alta (7.5) | 0.43% | — | 7 nov 2023 | Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame. |
| CVE-2023-33059 | Alta (7.8) | 0.11% | — | 7 nov 2023 | Memory corruption in Audio while processing the VOC packet data from ADSP. |
| CVE-2023-33056 | Alta (7.5) | 0.43% | — | 7 nov 2023 | Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE. |
| CVE-2023-33055 | Alta (7.8) | 0.14% | — | 7 nov 2023 | Memory Corruption in Audio while invoking callback function in driver from ADSP. |
| CVE-2023-33048 | Alta (7.5) | 0.43% | — | 7 nov 2023 | Transient DOS in WLAN Firmware while parsing t2lm buffers. |
| CVE-2023-33047 | Alta (7.5) | 0.43% | — | 7 nov 2023 | Transient DOS in WLAN Firmware while parsing no-inherit IES. |
| CVE-2023-33045 | Crítica (9.8) | 0.47% | — | 7 nov 2023 | Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute. |
| CVE-2023-33031 | Alta (7.8) | 0.11% | — | 7 nov 2023 | Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer. |
| CVE-2023-28574 | Alta (7.8) | 0.13% | — | 7 nov 2023 | Memory corruption in core services when Diag handler receives a command to configure event listeners. |
| CVE-2023-33035 | Alta (7.8) | 0.12% | — | 3 oct 2023 | Memory corruption while invoking callback function of AFE from ADSP. |
| CVE-2023-33034 | Alta (7.8) | 0.12% | — | 3 oct 2023 | Memory corruption while parsing the ADSP response command. |
| CVE-2023-33029 | Alta (7.8) | 0.12% | — | 3 oct 2023 | Memory corruption in DSP Service during a remote call from HLOS to DSP. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.