Known Vulnerabilities for Qca4020 by Qualcomm
Listed below are 10 of the newest known vulnerabilities associated with "Qca4020" by "Qualcomm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
More device details and information can be found at device.report here: Qualcomm Qca4020
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-33059 json | Memory corruption in Audio while processing the VOC packet data from ADSP. | 7.8 - HIGH | 2023-11-07 | 2023-11-14 |
| CVE-2023-28560 json | Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload. | 7.8 - HIGH | 2023-09-05 | 2023-09-12 |
| CVE-2023-28537 json | Memory corruption while allocating memory in COmxApeDec module in Audio. | 7.8 - HIGH | 2023-08-08 | 2023-08-10 |
| CVE-2023-22666 json | Memory Corruption in Audio while playing amrwbplus clips with modified content. | 7.8 - HIGH | 2023-08-08 | 2023-08-10 |
| CVE-2023-21626 json | Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key. | 7.1 - HIGH | 2023-08-08 | 2023-08-10 |
| CVE-2023-21625 json | Information disclosure in Network Services due to buffer over-read while the device receives DNS response. | 7.5 - HIGH | 2023-08-08 | 2023-08-10 |
| CVE-2022-40531 json | Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message. | 7.8 - HIGH | 2023-03-10 | 2023-04-19 |
| CVE-2022-40512 json | Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. | 7.5 - HIGH | 2023-02-12 | 2023-04-19 |
| CVE-2022-40510 json | Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder. | 9.8 - CRITICAL | 2023-08-08 | 2023-08-10 |
| CVE-2022-33286 json | Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames. | 6.5 - MEDIUM | 2023-01-09 | 2023-04-19 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Qualcomm | Qca4020 | - |