DSP Services Memory Corruption on Qualcomm Snapdragon HLOS-to-DSP Call
CVE-2023-33063 Published on December 5, 2023

Use After Free in DSP Services
Memory corruption in DSP Services during a remote call from HLOS to DSP.

NVD

Known Exploited Vulnerability

This Qualcomm Multiple Chipsets Use-After-Free Vulnerability is part of CISA's list of Known Exploited Vulnerabilities. Multiple Qualcomm chipsets contain a use-after-free vulnerability due to memory corruption in DSP Services during a remote call from HLOS to DSP.

The following remediation steps are recommended / required by December 26, 2023: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.

Vulnerability Analysis

CVE-2023-33063 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. This vulnerability is known to be actively exploited by threat actors. The potential impact of an exploit of this vulnerability is considered to be very high.

Attack Vector:
LOCAL
Attack Complexity:
LOW
Privileges Required:
LOW
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
HIGH
Integrity Impact:
HIGH
Availability Impact:
HIGH

Weakness Type

What is a Dangling pointer Vulnerability?

Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.

CVE-2023-33063 has been classified to as a Dangling pointer vulnerability or weakness.


Products Associated with CVE-2023-33063

Want to know whenever a new CVE is published for Qualcomm products? stack.watch will email you.

 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Affected Versions

Qualcomm, Inc. Snapdragon: qualcomm 315_5g_iot_modem_firmware: qualcomm apq8017_firmware: qualcomm aqt1000_firmware: qualcomm ar8031_firmware: qualcomm ar8035_firmware: qualcomm ar9380_firmware: qualcomm c-v2x_9150_firmware: qualcomm csr8811_firmware: qualcomm csra6620_firmware: qualcomm csra6640_firmware: qualcomm csrb31024_firmware: qualcomm fastconnect_6200_firmware: qualcomm fastconnect_6700_firmware: qualcomm fastconnect_6800_firmware: qualcomm fastconnect_6900_firmware: qualcomm fastconnect_7800_firmware: qualcomm flight_rb5_5g_platform_firmware: qualcomm immersive_home_214_platform_firmware: qualcomm immersive_home_216_platform_firmware: qualcomm immersive_home_316_platform_firmware: qualcomm immersive_home_318_platform_firmware: qualcomm ipq4018_firmware: qualcomm ipq4019_firmware: qualcomm ipq4028_firmware: qualcomm ipq4029_firmware: qualcomm ipq5010_firmware: qualcomm ipq6010_firmware: qualcomm ipq6018_firmware: qualcomm ipq6028_firmware: qualcomm ipq8064_firmware: qualcomm ipq8065_firmware: qualcomm ipq8068_firmware: qualcomm ipq8070_firmware: qualcomm ipq8070a_firmware: qualcomm ipq8071a_firmware: qualcomm ipq8072a_firmware: qualcomm ipq8074a_firmware: qualcomm ipq8076_firmware: qualcomm ipq8076a_firmware: qualcomm ipq8078_firmware: qualcomm ipq8078a_firmware: qualcomm ipq8173_firmware: qualcomm ipq8174_firmware: qualcomm mdm9650_firmware: qualcomm qam8255p_firmware: qualcomm qam8295p_firmware: qualcomm qam8650p_firmware: qualcomm qam8775p_firmware: qualcomm qca4024_firmware: qualcomm qca6174a_firmware: qualcomm qca6310_firmware: qualcomm qca6320_firmware: qualcomm qca6335_firmware: qualcomm qca6391_firmware: qualcomm qca6420_firmware: qualcomm qca6421_firmware: qualcomm qca6426_firmware: qualcomm qca6430_firmware: qualcomm qca6431_firmware: qualcomm qca6436_firmware: qualcomm qca6564_firmware: qualcomm qca6564au_firmware: qualcomm qca6574_firmware: qualcomm qca6574a_firmware: qualcomm qca6574au_firmware: qualcomm qca6595_firmware: qualcomm qca6595au_firmware: qualcomm qca6696_firmware: qualcomm qca6698aq_firmware: qualcomm qca6797aq_firmware: qualcomm qca7500_firmware: qualcomm qca8075_firmware: qualcomm qca8081_firmware: qualcomm qca8337_firmware: qualcomm qca9377_firmware: qualcomm qca9880_firmware: qualcomm qca9886_firmware: qualcomm qca9888_firmware: qualcomm qca9889_firmware: qualcomm qca9898_firmware: qualcomm qca9980_firmware: qualcomm qca9984_firmware: qualcomm qca9985_firmware: qualcomm qca9990_firmware: qualcomm qca9992_firmware: qualcomm qca9994_firmware: qualcomm qcm2290_firmware: qualcomm qcm4290_firmware: qualcomm qcm4325_firmware: qualcomm qcm4490_firmware: qualcomm qcm5430_firmware: qualcomm qcm6125_firmware: qualcomm qcm6490_firmware: qualcomm qcn5022_firmware: qualcomm qcn5024_firmware: qualcomm qcn5052_firmware: qualcomm qcn5122_firmware: qualcomm qcn5124_firmware: qualcomm qcn5152_firmware: qualcomm qcn5154_firmware: qualcomm qcn5164_firmware: qualcomm qcn6023_firmware: qualcomm qcn6024_firmware: qualcomm qcn9000_firmware: qualcomm qcn9011_firmware: qualcomm qcn9012_firmware: qualcomm qcn9022_firmware: qualcomm qcn9024_firmware: qualcomm qcn9070_firmware: qualcomm qcn9072_firmware: qualcomm qcn9074_firmware: qualcomm qcn9100_firmware: qualcomm qcs2290_firmware: qualcomm qcs410_firmware: qualcomm qcs4290_firmware: qualcomm qcs4490_firmware: qualcomm qcs5430_firmware: qualcomm qcs610_firmware: qualcomm qcs6125_firmware: qualcomm qcs6490_firmware: qualcomm qcs7230_firmware: qualcomm qcs8155_firmware: qualcomm qcs8250_firmware: qualcomm qcs8550_firmware: qualcomm qrb5165m_firmware: qualcomm qrb5165n_firmware: qualcomm qsm8250_firmware: qualcomm_205_mobile_platform_firmware: qualcomm_215_mobile_platform_firmware: qualcomm_video_collaboration_vc1_platform_firmware: qualcomm_video_collaboration_vc3_platform_firmware: qualcomm_video_collaboration_vc5_platform_firmware: qualcomm robotics_rb3_platform_firmware: qualcomm robotics_rb5_platform_firmware: qualcomm sa4150p_firmware: qualcomm sa4155p_firmware: qualcomm sa6145p_firmware: qualcomm sa6150p_firmware: qualcomm sa6155_firmware: qualcomm sa6155p_firmware: qualcomm sa8145p_firmware: qualcomm sa8150p_firmware: qualcomm sa8155_firmware: qualcomm sa8155p_firmware: qualcomm sa8195p_firmware: qualcomm sa8255p_firmware: qualcomm sa8295p_firmware: qualcomm sa8770p_firmware: qualcomm sa8775p_firmware: qualcomm sa9000p_firmware: qualcomm sd_675_firmware: qualcomm sd_8_gen1_5g_firmware: qualcomm sd626_firmware: qualcomm sd660_firmware: qualcomm sd670_firmware: qualcomm sd675_firmware: qualcomm sd730_firmware: qualcomm sd835_firmware: qualcomm sd855_firmware: qualcomm sd865_5g_firmware: qualcomm sd888_firmware: qualcomm sdm429w_firmware: qualcomm sdx55_firmware: qualcomm sg4150p_firmware: qualcomm sg8275p_firmware: qualcomm sm4125_firmware: qualcomm sm6250_firmware: qualcomm sm7250p_firmware: qualcomm sm7315_firmware: qualcomm sm7325p_firmware: qualcomm sm8550p_firmware: qualcomm smart_audio_400_platform_firmware: qualcomm snapdragon_210_processor_firmware: qualcomm snapdragon_212_mobile_platform_firmware: qualcomm snapdragon_4_gen_1_mobile_platform_firmware: qualcomm snapdragon_4_gen_2_mobile_platform_firmware: qualcomm snapdragon_425_mobile_platform_firmware: qualcomm snapdragon_429_mobile_platform_firmware: qualcomm snapdragon_439_mobile_platform_firmware: qualcomm snapdragon_460_mobile_platform_firmware: qualcomm snapdragon_480_5g_mobile_platform_firmware: qualcomm snapdragon_625_mobile_platform_firmware: qualcomm snapdragon_626_mobile_platform_firmware: qualcomm snapdragon_632_mobile_platform_firmware: qualcomm snapdragon_660_mobile_platform_firmware: qualcomm snapdragon_662_mobile_platform_firmware: qualcomm snapdragon_665_mobile_platform_firmware: qualcomm snapdragon_670_mobile_platform_firmware: qualcomm snapdragon_675_mobile_platform_firmware: qualcomm snapdragon_680_4g_mobile_platform_firmware: qualcomm snapdragon_690_5g_mobile_platform_firmware: qualcomm snapdragon_695_5g_mobile_platform_firmware: qualcomm snapdragon_710_mobile_platform_firmware: qualcomm snapdragon_720g_mobile_platform_firmware: qualcomm snapdragon_750g_5g_mobile_platform_firmware: qualcomm snapdragon_778g_5g_mobile_platform_firmware: qualcomm snapdragon_780g_5g_mobile_platform_firmware: qualcomm snapdragon_8_gen_1_mobile_platform_firmware: qualcomm snapdragon_8_gen_2_mobile_platform_firmware: qualcomm snapdragon_820_automotive_platform_firmware: qualcomm snapdragon_835_mobile_pc_platform_firmware: qualcomm snapdragon_845_mobile_platform_firmware: qualcomm snapdragon_855_mobile_platform_firmware: qualcomm snapdragon_865_5g_mobile_platform_firmware: qualcomm snapdragon_888_5g_mobile_platform_firmware: qualcomm snapdragon_ar2_gen_1_platform_firmware: qualcomm snapdragon_auto_5g_modem-rf_firmware: qualcomm snapdragon_x12_lte_modem_firmware: qualcomm snapdragon_x24_lte_modem_firmware: qualcomm snapdragon_x50_5g_modem-rf_system_firmware: qualcomm snapdragon_x55_5g_modem-rf_system_firmware: qualcomm snapdragon_x65_5g_modem-rf_system_firmware: qualcomm snapdragon_xr1_platform_firmware: qualcomm snapdragon_xr2_5g_platform_firmware: qualcomm snapdragon_auto_4g_modem_firmware: qualcomm ssg2115p_firmware: qualcomm ssg2125p_firmware: qualcomm sw5100_firmware: qualcomm sw5100p_firmware: qualcomm sxr1120_firmware: qualcomm sxr1230p_firmware: qualcomm sxr2130_firmware: qualcomm sxr2230p_firmware: qualcomm vision_intelligence_300_platform_firmware: qualcomm vision_intelligence_400_platform_firmware: qualcomm wcd9326_firmware: qualcomm wcd9335_firmware: qualcomm wcd9340_firmware: qualcomm wcd9341_firmware: qualcomm wcd9360_firmware: qualcomm wcd9370_firmware: qualcomm wcd9371_firmware: qualcomm wcd9375_firmware: qualcomm wcd9380_firmware: qualcomm wcd9385_firmware: qualcomm wcd9390_firmware: qualcomm wcd9395_firmware: qualcomm wcn3610_firmware: qualcomm wcn3615_firmware: qualcomm wcn3620_firmware: qualcomm wcn3660b_firmware: qualcomm wcn3680_firmware: qualcomm wcn3680b_firmware: qualcomm wcn3910_firmware: qualcomm wcn3950_firmware: qualcomm wcn3980_firmware: qualcomm wcn3988_firmware: qualcomm wcn3990_firmware: qualcomm wcn6740_firmware: qualcomm wsa8810_firmware: qualcomm wsa8815_firmware: qualcomm wsa8830_firmware: qualcomm wsa8832_firmware: qualcomm wsa8835_firmware: qualcomm wsa8840_firmware: qualcomm wsa8845_firmware: qualcomm wsa8845h_firmware:

Exploit Probability

EPSS
0.44%
Percentile
62.80%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.