CVE-2024-33070

Transient DOS while parsing ESP IE from beacon/probe response frame.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574a:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564au:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:qca6564a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564a:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:mdm9628_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9628:-:*:*:*:*:*:*:*

History

16 Oct 2024, 19:47

Type Values Removed Values Added
CWE CWE-125
CPE cpe:2.3:o:qualcomm:mdm9628_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574au:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6574a:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:mdm9628:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6564a_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564au:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6564a:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:*
Summary
  • (es) DOS transitorio al analizar ESP IE desde el framework de respuesta de sonda/baliza.
References () https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html - () https://docs.qualcomm.com/product/publicresources/securitybulletin/october-2024-bulletin.html - Vendor Advisory
First Time Qualcomm mdm9628 Firmware
Qualcomm mdm9628
Qualcomm qca6564a Firmware
Qualcomm qca6564a
Qualcomm qca6564au Firmware
Qualcomm qca6574a
Qualcomm qca6574au Firmware
Qualcomm qca6574a Firmware
Qualcomm qca6564au
Qualcomm
Qualcomm qca6574au

07 Oct 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-07 13:15

Updated : 2024-10-16 19:47


NVD link : CVE-2024-33070

Mitre link : CVE-2024-33070

CVE.ORG link : CVE-2024-33070


JSON object : View

Products Affected

qualcomm

  • mdm9628_firmware
  • mdm9628
  • qca6574a_firmware
  • qca6574a
  • qca6564a
  • qca6564au_firmware
  • qca6574au
  • qca6574au_firmware
  • qca6564au
  • qca6564a_firmware
CWE
CWE-125

Out-of-bounds Read

CWE-126

Buffer Over-read