7.8
CVE-2023-33046
- EPSS 0.02%
- Veröffentlicht 06.02.2024 06:15:58
- Zuletzt bearbeitet 11.08.2025 15:06:17
- Quelle product-security@qualcomm.com
- CVE-Watchlists
- Unerledigt
Time-of-check Time-of-use (TOCTOU) Race Condition in Trusted Execution Environment
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Ar8035 Firmware Version-
Qualcomm ≫ Fastconnect 6900 Firmware Version-
Qualcomm ≫ Fastconnect 7800 Firmware Version-
Qualcomm ≫ Flight Rb5 5g Platform Firmware Version-
Qualcomm ≫ Qam8295p Firmware Version-
Qualcomm ≫ Qca6391 Firmware Version-
Qualcomm ≫ Qca6574au Firmware Version-
Qualcomm ≫ Qca6595 Firmware Version-
Qualcomm ≫ Qca6696 Firmware Version-
Qualcomm ≫ Qca6698aq Firmware Version-
Qualcomm ≫ Qca8081 Firmware Version-
Qualcomm ≫ Qca8337 Firmware Version-
Qualcomm ≫ Qcm8550 Firmware Version-
Qualcomm ≫ Qcn6024 Firmware Version-
Qualcomm ≫ Qcn9011 Firmware Version-
Qualcomm ≫ Qcn9012 Firmware Version-
Qualcomm ≫ Qcn9024 Firmware Version-
Qualcomm ≫ Qcs7230 Firmware Version-
Qualcomm ≫ Qcs8250 Firmware Version-
Qualcomm ≫ Qcs8550 Firmware Version-
Qualcomm ≫ Qrb5165m Firmware Version-
Qualcomm ≫ Qrb5165n Firmware Version-
Qualcomm ≫ Robotics Rb5 Platform Firmware Version-
Qualcomm ≫ Sa8295p Firmware Version-
Qualcomm ≫ Sa8540p Firmware Version-
Qualcomm ≫ Sa9000p Firmware Version-
Qualcomm ≫ Sg8275p Firmware Version-
Qualcomm ≫ Sm8550p Firmware Version-
Qualcomm ≫ Snapdragon Ar2 Gen 1 Platform Firmware Version-
Qualcomm ≫ Snapdragon X70 Modem-rf System Firmware Version-
Qualcomm ≫ Ssg2115p Firmware Version-
Qualcomm ≫ Ssg2125p Firmware Version-
Qualcomm ≫ Sxr1230p Firmware Version-
Qualcomm ≫ Sxr2230p Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Wcd9385 Firmware Version-
Qualcomm ≫ Wcd9390 Firmware Version-
Qualcomm ≫ Wcd9395 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wsa8832 Firmware Version-
Qualcomm ≫ Wsa8835 Firmware Version-
Qualcomm ≫ Wsa8840 Firmware Version-
Qualcomm ≫ Wsa8845 Firmware Version-
Qualcomm ≫ Wsa8845h Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.02% | 0.035 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7 | 1 | 5.9 |
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| product-security@qualcomm.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition
The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check. This can cause the product to perform invalid actions when the resource is in an unexpected state.
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.