6.5
CVE-2024-23350
- EPSS 0.04%
- Veröffentlicht 05.08.2024 15:15:45
- Zuletzt bearbeitet 26.11.2024 15:48:05
- Quelle product-security@qualcomm.com
- Teams Watchlist Login
- Unerledigt Login
Permanent DOS when DL NAS transport receives multiple payloads such that one payload contains SOR container whose integrity check has failed, and the other is LPP where UE needs to send status message to network.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Wsa8845h Firmware Version-
Qualcomm ≫ Wsa8845 Firmware Version-
Qualcomm ≫ Wsa8840 Firmware Version-
Qualcomm ≫ Wcd9395 Firmware Version-
Qualcomm ≫ Wcd9390 Firmware Version-
Qualcomm ≫ Wcd9340 Firmware Version-
Qualcomm ≫ Qfw7124 Firmware Version-
Qualcomm ≫ Qfw7114 Firmware Version-
Qualcomm ≫ Qep8111 Firmware Version-
Qualcomm ≫ Qcn6274 Firmware Version-
Qualcomm ≫ Qcn6224 Firmware Version-
Qualcomm ≫ Qcc710 Firmware Version-
Qualcomm ≫ Qca8337 Firmware Version-
Qualcomm ≫ Qca8081 Firmware Version-
Qualcomm ≫ Qca6698aq Firmware Version-
Qualcomm ≫ Qca6584au Firmware Version-
Qualcomm ≫ Qca6174a Firmware Version-
Qualcomm ≫ Fastconnect 7800 Firmware Version-
Qualcomm ≫ Fastconnect 6900 Firmware Version-
Qualcomm ≫ Ar8035 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.119 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
product-security@qualcomm.com | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-617 Reachable Assertion
The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.