Qualcomm QCC2076 Firmware

CPE Details

Qualcomm QCC2076 Firmware
-
2023-06-09
11h55 +00:00
2023-07-15
01h25 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:qualcomm:qcc2076_firmware:-:*:*:*:*:*:*:*

Informations

Vendor

qualcomm

Product

qcc2076_firmware

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-53027 2025-03-03 10h07 +00:00 Transient DOS may occur while processing the country IE.
7.5
High
CVE-2024-49840 2025-02-03 16h51 +00:00 Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality.
7.8
High
CVE-2024-49839 2025-02-03 16h51 +00:00 Memory corruption during management frame processing due to mismatch in T2LM info element.
9.8
Critical
CVE-2024-49838 2025-02-03 16h51 +00:00 Information disclosure while parsing the OCI IE with invalid length.
8.2
High
CVE-2024-45561 2025-02-03 16h51 +00:00 Memory corruption while handling IOCTL call from user-space to set latency level.
7.8
High
CVE-2024-45558 2025-01-06 10h33 +00:00 Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
7.5
High
CVE-2024-45548 2025-01-06 10h33 +00:00 Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call.
7.8
High
CVE-2024-45547 2025-01-06 10h33 +00:00 Memory corruption while processing IOCTL call invoked from user-space to verify non extension FIPS encryption and decryption functionality.
7.8
High
CVE-2024-45546 2025-01-06 10h33 +00:00 Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
7.8
High
CVE-2024-45542 2025-01-06 10h33 +00:00 Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
7.8
High
CVE-2024-45541 2025-01-06 10h33 +00:00 Memory corruption when IOCTL call is invoked from user-space to read board data.
7.8
High
CVE-2024-43053 2024-12-02 10h18 +00:00 Memory corruption while invoking IOCTL calls from user space to read WLAN target diagnostic information.
7.8
High
CVE-2024-43050 2024-12-02 10h18 +00:00 Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
7.8
High
CVE-2024-43049 2024-12-02 10h18 +00:00 Memory corruption while invoking IOCTL calls from user space to set generic private command inside WLAN driver.
7.8
High
CVE-2024-38410 2024-11-04 10h04 +00:00 Memory corruption while IOCLT is called when device is in invalid state and the WMI command buffer may be freed twice.
7.8
High
CVE-2024-38409 2024-11-04 10h04 +00:00 Memory corruption while station LL statistic handling.
7.8
High
CVE-2024-38408 2024-11-04 10h04 +00:00 Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
9.1
Critical
CVE-2024-38405 2024-11-04 10h04 +00:00 Transient DOS while processing the CU information from RNR IE.
7.5
High
CVE-2024-38403 2024-11-04 10h04 +00:00 Transient DOS while parsing BTM ML IE when per STA profile is not included.
7.5
High
CVE-2024-33073 2024-10-07 12h58 +00:00 Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
8.2
High
CVE-2024-33069 2024-10-07 12h58 +00:00 Transient DOS when transmission of management frame sent by host is not successful and error status is received in the host.
7.5
High
CVE-2024-33049 2024-10-07 12h58 +00:00 Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame.
7.5
High
CVE-2024-33057 2024-09-02 10h22 +00:00 Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.
7.5
High
CVE-2024-33051 2024-09-02 10h22 +00:00 Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
7.5
High
CVE-2024-33050 2024-09-02 10h22 +00:00 Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
7.5
High
CVE-2024-33048 2024-09-02 10h22 +00:00 Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.
7.5
High
CVE-2024-33026 2024-08-05 14h21 +00:00 Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.
7.5
High
CVE-2024-33025 2024-08-05 14h21 +00:00 Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
7.5
High
CVE-2024-33024 2024-08-05 14h21 +00:00 Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length.
7.5
High
CVE-2024-33020 2024-08-05 14h21 +00:00 Transient DOS while processing TID-to-link mapping IE elements.
7.5
High
CVE-2024-33019 2024-08-05 14h21 +00:00 Transient DOS while parsing the received TID-to-link mapping action frame.
7.5
High
CVE-2024-33018 2024-08-05 14h21 +00:00 Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame.
7.5
High
CVE-2024-33015 2024-08-05 14h21 +00:00 Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.
7.5
High
CVE-2024-33014 2024-08-05 14h21 +00:00 Transient DOS while parsing ESP IE from beacon/probe response frame.
7.5
High
CVE-2024-33013 2024-08-05 14h21 +00:00 Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.
7.5
High
CVE-2024-33012 2024-08-05 14h21 +00:00 Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.
7.5
High
CVE-2024-33011 2024-08-05 14h21 +00:00 Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.
7.5
High
CVE-2024-33010 2024-08-05 14h21 +00:00 Transient DOS while parsing fragments of MBSSID IE from beacon frame.
7.5
High
CVE-2024-21467 2024-08-05 14h21 +00:00 Information disclosure while handling beacon probe frame during scan entry generation in client side.
7.5
High
CVE-2024-21459 2024-08-05 14h21 +00:00 Information disclosure while handling beacon or probe response frame in STA.
7.5
High
CVE-2024-21466 2024-07-01 14h17 +00:00 Information disclosure while parsing sub-IE length during new IE generation.
7.5
High
CVE-2024-21458 2024-07-01 14h17 +00:00 Information disclosure while handling SA query action frame.
7.5
High
CVE-2024-21457 2024-07-01 14h17 +00:00 INformation disclosure while handling Multi-link IE in beacon frame.
7.5
High
CVE-2024-21456 2024-07-01 14h17 +00:00 Information Disclosure while parsing beacon frame in STA.
9.1
Critical
CVE-2024-23363 2024-06-03 10h05 +00:00 Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame.
7.5
High
CVE-2023-43545 2024-06-03 10h05 +00:00 Memory corruption when more scan frequency list or channels are sent from the user space.
7.8
High
CVE-2023-43537 2024-06-03 10h05 +00:00 Information disclosure while handling T2LM Action Frame in WLAN Host.
7.5
High
CVE-2024-21477 2024-05-06 14h32 +00:00 Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.
7.5
High
CVE-2023-43553 2024-03-04 10h48 +00:00 Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
9.8
Critical
CVE-2023-43552 2024-03-04 10h48 +00:00 Memory corruption while processing MBSSID beacon containing several subelement IE.
9.8
Critical
CVE-2023-43549 2024-03-04 10h48 +00:00 Memory corruption while processing TPC target power table in FTM TPC.
8.4
High
CVE-2023-43539 2024-03-04 10h48 +00:00 Transient DOS while processing an improperly formatted 802.11az Fine Time Measurement protocol frame.
7.5
High
CVE-2023-43536 2024-02-06 05h47 +00:00 Transient DOS while parse fils IE with length equal to 1.
7.5
High
CVE-2023-43534 2024-02-06 05h47 +00:00 Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
9.8
Critical
CVE-2023-43533 2024-02-06 05h47 +00:00 Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
7.5
High
CVE-2023-43523 2024-02-06 05h47 +00:00 Transient DOS while processing 11AZ RTT management action frame received through OTA.
7.5
High
CVE-2023-43522 2024-02-06 05h47 +00:00 Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
7.5
High
CVE-2023-43520 2024-02-06 05h47 +00:00 Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
9.8
Critical
CVE-2023-43511 2024-01-02 05h38 +00:00 Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
7.5
High
CVE-2023-33109 2024-01-02 05h38 +00:00 Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
7.5
High
CVE-2023-33062 2024-01-02 05h38 +00:00 Transient DOS in WLAN Firmware while parsing a BTM request.
7.5
High
CVE-2023-33098 2023-12-05 03h04 +00:00 Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
7.5
High
CVE-2023-33097 2023-12-05 03h04 +00:00 Transient DOS in WLAN Firmware while processing a FTMR frame.
7.5
High
CVE-2023-33089 2023-12-05 03h04 +00:00 Transient DOS when processing a NULL buffer while parsing WLAN vdev.
7.5
High
CVE-2023-33088 2023-12-05 03h04 +00:00 Memory corruption when processing cmd parameters while parsing vdev.
8.4
High
CVE-2023-33081 2023-12-05 03h04 +00:00 Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.
7.5
High
CVE-2023-33080 2023-12-05 03h04 +00:00 Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
7.5
High
CVE-2023-33041 2023-12-05 03h04 +00:00 Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.
7.5
High
CVE-2023-28587 2023-12-05 03h03 +00:00 Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.
7.8
High
CVE-2023-33061 2023-11-07 05h26 +00:00 Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame.
7.5
High
CVE-2023-33056 2023-11-07 05h26 +00:00 Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE.
7.5
High
CVE-2023-33048 2023-11-07 05h26 +00:00 Transient DOS in WLAN Firmware while parsing t2lm buffers.
7.5
High
CVE-2023-33047 2023-11-07 05h26 +00:00 Transient DOS in WLAN Firmware while parsing no-inherit IES.
7.5
High
CVE-2023-33045 2023-11-07 05h26 +00:00 Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
9.8
Critical
CVE-2023-28572 2023-11-07 05h26 +00:00 Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.
8.8
High
CVE-2023-28553 2023-11-07 05h26 +00:00 Information Disclosure in WLAN Host when processing WMI event command.
6.1
Medium
CVE-2023-33028 2023-10-03 05h00 +00:00 Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
9.8
Critical
CVE-2023-33027 2023-10-03 05h00 +00:00 Transient DOS in WLAN Firmware while parsing rsn ies.
7.5
High
CVE-2023-33026 2023-10-03 05h00 +00:00 Transient DOS in WLAN Firmware while parsing a NAN management frame.
7.5
High
CVE-2023-28571 2023-10-03 05h00 +00:00 Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.
6.1
Medium
CVE-2023-28539 2023-10-03 05h00 +00:00 Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.
7.8
High
CVE-2023-21661 2023-06-06 07h39 +00:00 Transient DOS while parsing WLAN beacon or probe-response frame.
7.5
High
CVE-2023-21660 2023-06-06 07h39 +00:00 Transient DOS in WLAN Firmware while parsing FT Information Elements.
7.5
High
CVE-2023-21659 2023-06-06 07h39 +00:00 Transient DOS in WLAN Firmware while processing frames with missing header fields.
7.5
High
CVE-2023-21658 2023-06-06 07h39 +00:00 Transient DOS in WLAN Firmware while processing the received beacon or probe response frame.
7.5
High
CVE-2023-21656 2023-06-06 07h39 +00:00 Memory corruption in WLAN HOST while receiving an WMI event from firmware.
7.8
High