Summary
Detail | |||
---|---|---|---|
Vendor | Qualcomm | First view | 2021-02-22 |
Product | qca9985 Firmware | Last view | 2023-11-07 |
Version | Type | Os | |
Update | |||
Edition | |||
Language | |||
Sofware Edition | |||
Target Software | |||
Target Hardware | |||
Other |
Activity : Overall
COMMON PLATFORM ENUMERATION: Repartition per Version
CPE Name | Affected CVE |
---|---|
cpe:2.3:o:qualcomm:qca9985_firmware:-:*:*:*:*:*:*:* | 88 |
Related : CVE
Date | Alert | Description | |
---|---|---|---|
7.5 | 2023-11-07 | CVE-2023-33047 | Transient DOS in WLAN Firmware while parsing no-inherit IES. |
5.5 | 2023-11-07 | CVE-2023-28569 | Information disclosure in WLAN HAL while handling command through WMI interfaces. |
5.5 | 2023-11-07 | CVE-2023-28563 | Information disclosure in IOE Firmware while handling WMI command. |
5.5 | 2023-11-07 | CVE-2023-28554 | Information Disclosure in Qualcomm IPC while reading values from shared memory in VM. |
5.5 | 2023-11-07 | CVE-2023-28553 | Information Disclosure in WLAN Host when processing WMI event command. |
9.8 | 2023-10-03 | CVE-2023-33028 | Memory corruption in WLAN Firmware while doing a memory copy of pmk cache. |
7.5 | 2023-10-03 | CVE-2023-33027 | Transient DOS in WLAN Firmware while parsing rsn ies. |
7.5 | 2023-10-03 | CVE-2023-33026 | Transient DOS in WLAN Firmware while parsing a NAN management frame. |
7.8 | 2023-10-03 | CVE-2023-28539 | Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command. |
7.5 | 2023-09-05 | CVE-2023-33015 | Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame. |
7.8 | 2023-09-05 | CVE-2023-28573 | Memory corruption in WLAN HAL while parsing WMI command parameters. |
7.8 | 2023-09-05 | CVE-2023-28567 | Memory corruption in WLAN HAL while handling command through WMI interfaces. |
7.8 | 2023-09-05 | CVE-2023-28565 | Memory corruption in WLAN HAL while handling command streams through WMI interfaces. |
7.8 | 2023-09-05 | CVE-2023-28564 | Memory corruption in WLAN HAL while passing command parameters through WMI interfaces. |
7.8 | 2023-09-05 | CVE-2023-28560 | Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload. |
7.8 | 2023-09-05 | CVE-2023-28559 | Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload. |
7.8 | 2023-09-05 | CVE-2023-28557 | Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload. |
7.8 | 2023-09-05 | CVE-2023-28549 | Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload. |
7.8 | 2023-09-05 | CVE-2023-28548 | Memory corruption in WLAN HAL while processing Tx/Rx commands from QDART. |
7.8 | 2023-09-05 | CVE-2023-28544 | Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers. |
7.8 | 2023-09-05 | CVE-2022-33275 | Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range. |
7.8 | 2023-07-04 | CVE-2023-28541 | Memory Corruption in Data Modem while processing DMA buffer release event about CFR data. |
7.8 | 2023-07-04 | CVE-2023-22387 | Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption. |
7.5 | 2023-06-06 | CVE-2023-21661 | Transient DOS while parsing WLAN beacon or probe-response frame. |
7.5 | 2023-06-06 | CVE-2023-21659 | Transient DOS in WLAN Firmware while processing frames with missing header fields. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
32% (27) | CWE-125 | Out-of-bounds Read |
14% (12) | CWE-787 | Out-of-bounds Write |
14% (12) | CWE-120 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflo... |
12% (10) | CWE-416 | Use After Free |
6% (5) | CWE-190 | Integer Overflow or Wraparound |
6% (5) | CWE-129 | Improper Validation of Array Index |
3% (3) | CWE-287 | Improper Authentication |
2% (2) | CWE-617 | Reachable Assertion |
2% (2) | CWE-400 | Uncontrolled Resource Consumption ('Resource Exhaustion') |
1% (1) | CWE-704 | Incorrect Type Conversion or Cast |
1% (1) | CWE-362 | Race Condition |
1% (1) | CWE-203 | Information Exposure Through Discrepancy |
1% (1) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
1% (1) | CWE-20 | Improper Input Validation |