CVE-2023-22384

Memory Corruption in VR Service while sending data using Fast Message Queue (FMQ).
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6696:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:sa6145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6145p:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:sa6150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6150p:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:sa8145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8145p:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:sa8150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8150p:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8155p:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:sa8195p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8195p:-:*:*:*:*:*:*:*

History

12 Apr 2024, 17:16

Type Values Removed Values Added
CWE CWE-120

04 Oct 2023, 18:03

Type Values Removed Values Added
First Time Qualcomm sa8195p
Qualcomm qca6696 Firmware
Qualcomm sa6150p
Qualcomm sa8150p Firmware
Qualcomm sa6155p
Qualcomm sa8150p
Qualcomm sa8155p Firmware
Qualcomm qca6696
Qualcomm sa8195p Firmware
Qualcomm qca6574au Firmware
Qualcomm sa8145p
Qualcomm sa6150p Firmware
Qualcomm sa6145p Firmware
Qualcomm qca6574au
Qualcomm sa6145p
Qualcomm
Qualcomm sa8145p Firmware
Qualcomm sa6155p Firmware
Qualcomm sa8155p
CWE CWE-787
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
References (MISC) https://www.qualcomm.com/company/product-security/bulletins/october-2023-bulletin - (MISC) https://www.qualcomm.com/company/product-security/bulletins/october-2023-bulletin - Vendor Advisory
CPE cpe:2.3:h:qualcomm:sa8150p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8195p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8195p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6145p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa6145p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6150p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6696:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8145p:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa8155p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa6150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:*

03 Oct 2023, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-10-03 06:15

Updated : 2024-04-12 17:16


NVD link : CVE-2023-22384

Mitre link : CVE-2023-22384

CVE.ORG link : CVE-2023-22384


JSON object : View

Products Affected

qualcomm

  • sa6150p_firmware
  • sa8155p
  • sa8145p
  • sa8145p_firmware
  • sa6155p
  • qca6696
  • sa8150p
  • sa8195p_firmware
  • qca6574au_firmware
  • sa6150p
  • sa8195p
  • qca6696_firmware
  • sa6145p_firmware
  • sa6155p_firmware
  • qca6574au
  • sa6145p
  • sa8155p_firmware
  • sa8150p_firmware
CWE
CWE-787

Out-of-bounds Write

CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')