8.4
CVE-2023-21630
- EPSS 0.06%
- Published 13.04.2023 07:15:21
- Last modified 21.11.2024 07:43:14
- Source product-security@qualcomm.com
- Teams watchlist Login
- Open Login
Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along with synx signal.
Data is provided by the National Vulnerability Database (NVD)
Qualcomm ≫ Qca6391 Firmware Version-
Qualcomm ≫ Qca6574 Firmware Version-
Qualcomm ≫ Qca6574a Firmware Version-
Qualcomm ≫ Qca6574au Firmware Version-
Qualcomm ≫ Qca6595au Firmware Version-
Qualcomm ≫ Qca6696 Firmware Version-
Qualcomm ≫ Sa6155p Firmware Version-
Qualcomm ≫ Sa8155p Firmware Version-
Qualcomm ≫ Sa8195p Firmware Version-
Qualcomm ≫ Sd680 Firmware Version-
Qualcomm ≫ Sd778g Firmware Version-
Qualcomm ≫ Sd888 Firmware Version-
Qualcomm ≫ Sg4150p Firmware Version-
Qualcomm ≫ Sm6225-ad Firmware Version-
Qualcomm ≫ Sm7315 Firmware Version-
Qualcomm ≫ Sm7325 Firmware Version-
Qualcomm ≫ Sm7325-ae Firmware Version-
Qualcomm ≫ Sm7325-af Firmware Version-
Qualcomm ≫ Sm7325p Firmware Version-
Qualcomm ≫ Sm7350-ab Firmware Version-
Qualcomm ≫ Sm8350 Firmware Version-
Qualcomm ≫ Sm8350-ac Firmware Version-
Qualcomm ≫ Sm8450 Firmware Version-
Qualcomm ≫ Sm8475 Firmware Version-
Qualcomm ≫ Sw5100 Firmware Version-
Qualcomm ≫ Sw5100p Firmware Version-
Qualcomm ≫ Wcd9370 Firmware Version-
Qualcomm ≫ Wcd9375 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Wcd9385 Firmware Version-
Qualcomm ≫ Wcn3950 Firmware Version-
Qualcomm ≫ Wcn3980 Firmware Version-
Qualcomm ≫ Wcn3988 Firmware Version-
Qualcomm ≫ Wcn6740 Firmware Version-
Qualcomm ≫ Wcn6750 Firmware Version-
Qualcomm ≫ Wcn685x-1 Firmware Version-
Qualcomm ≫ Wcn685x-5 Firmware Version-
Qualcomm ≫ Wcn785x-1 Firmware Version-
Qualcomm ≫ Wcn785x-5 Firmware Version-
Qualcomm ≫ Wsa8810 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wsa8835 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.06% | 0.158 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
product-security@qualcomm.com | 8.4 | 2.5 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-190 Integer Overflow or Wraparound
The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.
CWE-191 Integer Underflow (Wrap or Wraparound)
The product subtracts one value from another, such that the result is less than the minimum allowable integer value, which produces a value that is not equal to the correct result.