Wcd9390 Firmware
by Qualcomm
CVEs (365)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-33024 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length. | ||
| CVE-2024-33020 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while processing TID-to-link mapping IE elements. | ||
| CVE-2024-33019 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the received TID-to-link mapping action frame. | ||
| CVE-2024-33018 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame. | ||
| CVE-2024-33015 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report. | ||
| CVE-2024-33014 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing ESP IE from beacon/probe response frame. | ||
| CVE-2024-33013 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length. | ||
| CVE-2024-33012 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon. | ||
| CVE-2024-33011 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero. | ||
| CVE-2024-33010 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while parsing fragments of MBSSID IE from beacon frame. | ||
| CVE-2024-23353 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI. | ||
| CVE-2024-23352 | Hig | 0.49 | 7.5 | 0.00 | Aug 5, 2024 | Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA. | ||
| CVE-2024-23363 | Hig | 0.49 | 7.5 | 0.00 | Jun 3, 2024 | Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame. | ||
| CVE-2024-21477 | Hig | 0.49 | 7.5 | 0.00 | May 6, 2024 | Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame. | ||
| CVE-2023-43529 | Hig | 0.49 | 7.5 | 0.00 | May 6, 2024 | Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received. | ||
| CVE-2023-33101 | Hig | 0.49 | 7.5 | 0.00 | Apr 1, 2024 | Transient DOS while processing DL NAS TRANSPORT message with payload length 0. | ||
| CVE-2023-33100 | Hig | 0.49 | 7.5 | 0.00 | Apr 1, 2024 | Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification. | ||
| CVE-2023-33099 | Hig | 0.49 | 7.5 | 0.00 | Apr 1, 2024 | Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR. | ||
| CVE-2023-43539 | Hig | 0.49 | 7.5 | 0.00 | Mar 4, 2024 | Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame. | ||
| CVE-2023-33105 | Hig | 0.49 | 7.5 | 0.01 | Mar 4, 2024 | Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number. |
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing TID-to-link mapping IE elements.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the received TID-to-link mapping action frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing ESP IE from beacon/probe response frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing fragments of MBSSID IE from beacon frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
- risk 0.49cvss 7.5epss 0.00
Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing DL NAS TRANSPORT message with payload length 0.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing DL NAS Transport message when message ID is not defined in the 3GPP specification.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing SMS container of non-standard size received in DL NAS transport in NR.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.
- risk 0.49cvss 7.5epss 0.01
Transient DOS in WLAN Host and Firmware when large number of open authentication frames are sent with an invalid transaction sequence number.
Page 13 of 19