6.7
CVE-2024-23386
- EPSS 0.03%
- Veröffentlicht 04.11.2024 10:15:04
- Zuletzt bearbeitet 07.11.2024 19:54:23
- Quelle product-security@qualcomm.com
- Teams Watchlist Login
- Unerledigt Login
memory corruption when WiFi display APIs are invoked with large random inputs.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qualcomm ≫ Wsa8835 Firmware Version-
Qualcomm ≫ Wsa8830 Firmware Version-
Qualcomm ≫ Wcn3660b Firmware Version-
Qualcomm ≫ Wcn3620 Firmware Version-
Qualcomm ≫ Wcd9380 Firmware Version-
Qualcomm ≫ Snapdragon 429 Mobile Platform Firmware Version-
Qualcomm ≫ Sdm429w Firmware Version-
Qualcomm ≫ Fastconnect 7800 Firmware Version-
Qualcomm ≫ Fastconnect 6900 Firmware Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.066 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
product-security@qualcomm.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.