WLAN Firmware
by Qualcomm
CVEs (13)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-43511 | 0.00 | — | 0.00 | Jan 2, 2024 | Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. | |||
| CVE-2023-33112 | 0.00 | — | 0.00 | Jan 2, 2024 | Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element. | |||
| CVE-2023-33062 | 0.00 | — | 0.00 | Jan 2, 2024 | Transient DOS in WLAN Firmware while parsing a BTM request. | |||
| CVE-2023-33061 | 0.00 | — | 0.00 | Nov 7, 2023 | Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame. | |||
| CVE-2023-33027 | 0.00 | — | 0.00 | Oct 3, 2023 | Transient DOS in WLAN Firmware while parsing rsn ies. | |||
| CVE-2023-33026 | 0.00 | — | 0.00 | Oct 3, 2023 | Transient DOS in WLAN Firmware while parsing a NAN management frame. | |||
| CVE-2023-33016 | 0.00 | — | 0.00 | Sep 5, 2023 | Transient DOS in WLAN firmware while parsing MLO (multi-link operation). | |||
| CVE-2023-33015 | 0.00 | — | 0.00 | Sep 5, 2023 | Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame. | |||
| CVE-2023-28581 | 0.00 | — | 0.00 | Sep 5, 2023 | Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE. | |||
| CVE-2023-20689 | 0.00 | — | 0.02 | Jul 4, 2023 | In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664741; Issue ID: ALPS07664741. | |||
| CVE-2022-33309 | 0.00 | — | 0.00 | Mar 7, 2023 | Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes. | |||
| CVE-2022-40514 | 0.00 | — | 0.00 | Feb 9, 2023 | Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame. | |||
| CVE-2022-40512 | 0.00 | — | 0.00 | Feb 9, 2023 | Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. |
- CVE-2023-43511Jan 2, 2024risk 0.00cvss —epss 0.00
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
- CVE-2023-33112Jan 2, 2024risk 0.00cvss —epss 0.00
Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.
- CVE-2023-33062Jan 2, 2024risk 0.00cvss —epss 0.00
Transient DOS in WLAN Firmware while parsing a BTM request.
- CVE-2023-33061Nov 7, 2023risk 0.00cvss —epss 0.00
Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame.
- CVE-2023-33027Oct 3, 2023risk 0.00cvss —epss 0.00
Transient DOS in WLAN Firmware while parsing rsn ies.
- CVE-2023-33026Oct 3, 2023risk 0.00cvss —epss 0.00
Transient DOS in WLAN Firmware while parsing a NAN management frame.
- CVE-2023-33016Sep 5, 2023risk 0.00cvss —epss 0.00
Transient DOS in WLAN firmware while parsing MLO (multi-link operation).
- CVE-2023-33015Sep 5, 2023risk 0.00cvss —epss 0.00
Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.
- CVE-2023-28581Sep 5, 2023risk 0.00cvss —epss 0.00
Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.
- CVE-2023-20689Jul 4, 2023risk 0.00cvss —epss 0.02
In wlan firmware, there is possible system crash due to an integer overflow. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07664741; Issue ID: ALPS07664741.
- CVE-2022-33309Mar 7, 2023risk 0.00cvss —epss 0.00
Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.
- CVE-2022-40514Feb 9, 2023risk 0.00cvss —epss 0.00
Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.
- CVE-2022-40512Feb 9, 2023risk 0.00cvss —epss 0.00
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.