CVE-2023-33071
Published Dec 5, 2023Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics functionalities.
Vendor/product archive
239 CVEs tagged to qualcomm / qca6574au — 33 Critical, 142 High, 64 Medium, 0 Low, 0 Unrated.
Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics functionalities.
Memory corruption in WLAN Host while setting the PMK length in PMK length in internal cache.
Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.
Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.
Memory corruption in Audio when SSR event is triggered after music playback is stopped.
Memory corruption in Automotive Display while destroying the image handle created using connected display driver.
Memory corruption while parsing the ADSP response command.
Memory Corruption in VR Service while sending data using Fast Message Queue (FMQ).
Weak configuration in Automotive while VM is processing a listener request from TEE.
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.
Memory Corruption while accessing metadata in Display.
Memory corruption in Audio while validating and mapping metadata.
Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.
Memory Corruption due to improper validation of array index in Linux while updating adn record.
Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.
Information disclosure in Automotive multimedia due to buffer over-read.
Memory corruption in RIL while trying to send apdu packet.
Information disclosure in Bluetooth when an GATT packet is received due to improper input validation.
Memory corruption due to untrusted pointer dereference in automotive during system call.
Memory corruption in Trusted Execution Environment while calling service API with invalid address.
Memory corruption in Audio while running concurrent tunnel playback or during concurrent audio tunnel recording sessions.
An app with non-privileged access can change global system brightness and cause undesired system behavior.
Memory corruption in Video while calling APIs with different instance ID than the one received in initialization.
Information disclosure in DSP Services while loading dynamic module.
Memory corruption in Automotive GPU while querying a gsl memory node.