6.7
CVE-2024-23386
- EPSS 0.03%
- Published 04.11.2024 10:15:04
- Last modified 07.11.2024 19:54:23
- Source product-security@qualcomm.com
- Teams watchlist Login
- Open Login
memory corruption when WiFi display APIs are invoked with large random inputs.
Data is provided by the National Vulnerability Database (NVD)
Qualcomm ≫ Wsa8835 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wcn3660b Firmware Version-
Qualcomm ≫ Wcn3620 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Snapdragon 429 Mobile Platform Firmware Version-
Qualcomm ≫ Sdm429w Firmware Version-
Qualcomm ≫ Fastconnect 7800 Firmware Version-
Qualcomm ≫ Fastconnect 6900 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.066 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
product-security@qualcomm.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.