« Volver al listado

Qualcomm

Qualcomm Wcn785x-5 Firmware: vulnerabilidades y CVE

Qualcomm Wcn785x-5 Firmware tiene 83 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 5 son críticas y 1 figuran en el catálogo de explotación activa de CISA.

CVE83
Últimos 12 meses0
Críticas5
Explotadas activamente1

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

🔴 Explotadas activamente (CISA KEV)

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2023-33063Alta (7.8)0.67%⚠ Explotación activa5 dic 2023
Memory corruption in DSP Services during a remote call from HLOS to DSP.

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2023-33087Alta (7.8)0.16%—5 dic 2023
Memory corruption in Core while processing RX intent request.
CVE-2023-33083Crítica (9.8)0.61%—5 dic 2023
Memory corruption in WLAN Host while processing RRM beacon on the AP.
CVE-2023-33082Crítica (9.8)0.53%—5 dic 2023
Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
CVE-2023-33081Alta (7.5)0.47%—5 dic 2023
Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.
CVE-2023-33080Alta (7.5)0.34%—5 dic 2023
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
CVE-2023-33079Alta (7.8)0.16%—5 dic 2023
Memory corruption in Audio while running invalid audio recording from ADSP.
CVE-2023-33063Alta (7.8)0.67%⚠ Explotación activa5 dic 2023
Memory corruption in DSP Services during a remote call from HLOS to DSP.
CVE-2023-33054Crítica (9.1)0.36%—5 dic 2023
Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.
CVE-2023-33053Alta (7.8)0.14%—5 dic 2023
Memory corruption in Kernel while parsing metadata.
CVE-2023-33044Alta (7.5)0.52%—5 dic 2023
Transient DOS in Data modem while handling TLB control messages from the Network.
CVE-2023-33043Alta (7.5)0.52%—5 dic 2023
Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.
CVE-2023-33042Alta (7.5)0.61%—5 dic 2023
Transient DOS in Modem after RRC Setup message is received.
CVE-2023-33041Alta (7.5)0.47%—5 dic 2023
Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.
CVE-2023-33024Alta (7.8)0.16%—5 dic 2023
Memory corruption while sending SMS from AP firmware.
CVE-2023-33022Alta (7.8)0.16%—5 dic 2023
Memory corruption in HLOS while invoking IOCTL calls from user-space.
CVE-2023-33018Alta (7.8)0.11%—5 dic 2023
Memory corruption while using the UIM diag command to get the operators name.
CVE-2023-33017Alta (7.8)0.16%—5 dic 2023
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
CVE-2023-33074Alta (7.8)0.14%—7 nov 2023
Memory corruption in Audio when SSR event is triggered after music playback is stopped.
CVE-2023-33061Alta (7.5)0.43%—7 nov 2023
Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame.
CVE-2023-33059Alta (7.8)0.11%—7 nov 2023
Memory corruption in Audio while processing the VOC packet data from ADSP.
CVE-2023-33056Alta (7.5)0.43%—7 nov 2023
Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE.
CVE-2023-33055Alta (7.8)0.14%—7 nov 2023
Memory Corruption in Audio while invoking callback function in driver from ADSP.
CVE-2023-33048Alta (7.5)0.43%—7 nov 2023
Transient DOS in WLAN Firmware while parsing t2lm buffers.
CVE-2023-33047Alta (7.5)0.43%—7 nov 2023
Transient DOS in WLAN Firmware while parsing no-inherit IES.
CVE-2023-33045Crítica (9.8)0.47%—7 nov 2023
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
CVE-2023-33031Alta (7.8)0.11%—7 nov 2023
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
CVE-2023-28574Alta (7.8)0.13%—7 nov 2023
Memory corruption in core services when Diag handler receives a command to configure event listeners.
CVE-2023-33035Alta (7.8)0.12%—3 oct 2023
Memory corruption while invoking callback function of AFE from ADSP.
CVE-2023-33029Alta (7.8)0.12%—3 oct 2023
Memory corruption in DSP Service during a remote call from HLOS to DSP.
CVE-2023-33028Crítica (9.8)0.54%—3 oct 2023
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1059 Command and Scripting Interpreter1
  2. T1068 Exploitation for Privilege Escalation1

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Qualcomm