Transient DoS via IE file parser (len=1)
CVE-2023-43536 Published on February 6, 2024
Buffer Over-read in WLAN Firmware
Transient DOS while parse fils IE with length equal to 1.
Vulnerability Analysis
CVE-2023-43536 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality and integrity, and a high impact on availability.
Weakness Type
Buffer Over-read
The software reads from a buffer using buffer access mechanisms such as indexes or pointers that reference memory locations after the targeted buffer. This typically occurs when the pointer or its index is incremented to a position beyond the bounds of the buffer or when pointer arithmetic results in a position outside of the valid memory location to name a few. This may result in exposure of sensitive information or possibly a crash.
Products Associated with CVE-2023-43536
stack.watch emails you whenever new vulnerabilities are published in Google Android or Microsoft Internet Explorer (IE). Just hit a watch button to start following.
Affected Versions
Qualcomm, Inc. Snapdragon:- Version 315 5G IoT Modem is affected.
- Version AQT1000 is affected.
- Version AR8031 is affected.
- Version AR8035 is affected.
- Version AR9380 is affected.
- Version CSR8811 is affected.
- Version CSRA6620 is affected.
- Version CSRA6640 is affected.
- Version CSRB31024 is affected.
- Version FastConnect 6200 is affected.
- Version FastConnect 6700 is affected.
- Version FastConnect 6800 is affected.
- Version FastConnect 6900 is affected.
- Version FastConnect 7800 is affected.
- Version Flight RB5 5G Platform is affected.
- Version Immersive Home 214 Platform is affected.
- Version Immersive Home 216 Platform is affected.
- Version Immersive Home 316 Platform is affected.
- Version Immersive Home 318 Platform is affected.
- Version Immersive Home 3210 Platform is affected.
- Version Immersive Home 326 Platform is affected.
- Version IPQ4018 is affected.
- Version IPQ4028 is affected.
- Version IPQ4029 is affected.
- Version IPQ5010 is affected.
- Version IPQ5302 is affected.
- Version IPQ5312 is affected.
- Version IPQ5332 is affected.
- Version IPQ6010 is affected.
- Version IPQ6018 is affected.
- Version IPQ6028 is affected.
- Version IPQ8064 is affected.
- Version IPQ8069 is affected.
- Version IPQ8070 is affected.
- Version IPQ8070A is affected.
- Version IPQ8071 is affected.
- Version IPQ8072 is affected.
- Version IPQ8072A is affected.
- Version IPQ8074 is affected.
- Version IPQ8074A is affected.
- Version IPQ8076A is affected.
- Version IPQ8078 is affected.
- Version IPQ8078A is affected.
- Version IPQ8174 is affected.
- Version IPQ9554 is affected.
- Version IPQ9570 is affected.
- Version IPQ9574 is affected.
- Version PMP8074 is affected.
- Version QAM8255P is affected.
- Version QAM8295P is affected.
- Version QAM8650P is affected.
- Version QAM8775P is affected.
- Version QAMSRV1H is affected.
- Version QAMSRV1M is affected.
- Version QCA1062 is affected.
- Version QCA1064 is affected.
- Version QCA2062 is affected.
- Version QCA2064 is affected.
- Version QCA2065 is affected.
- Version QCA2066 is affected.
- Version QCA4024 is affected.
- Version QCA6174A is affected.
- Version QCA6310 is affected.
- Version QCA6335 is affected.
- Version QCA6391 is affected.
- Version QCA6420 is affected.
- Version QCA6421 is affected.
- Version QCA6426 is affected.
- Version QCA6428 is affected.
- Version QCA6430 is affected.
- Version QCA6431 is affected.
- Version QCA6436 is affected.
- Version QCA6438 is affected.
- Version QCA6554A is affected.
- Version QCA6564AU is affected.
- Version QCA6574 is affected.
- Version QCA6574A is affected.
- Version QCA6574AU is affected.
- Version QCA6584AU is affected.
- Version QCA6595 is affected.
- Version QCA6595AU is affected.
- Version QCA6678AQ is affected.
- Version QCA6688AQ is affected.
- Version QCA6696 is affected.
- Version QCA6698AQ is affected.
- Version QCA6797AQ is affected.
- Version QCA8072 is affected.
- Version QCA8075 is affected.
- Version QCA8081 is affected.
- Version QCA8337 is affected.
- Version QCA8386 is affected.
- Version QCA9888 is affected.
- Version QCA9889 is affected.
- Version QCA9898 is affected.
- Version QCA9980 is affected.
- Version QCA9984 is affected.
- Version QCA9990 is affected.
- Version QCA9992 is affected.
- Version QCA9994 is affected.
- Version QCC2073 is affected.
- Version QCC2076 is affected.
- Version QCC710 is affected.
- Version QCF8000 is affected.
- Version QCM2290 is affected.
- Version QCM4290 is affected.
- Version QCM4325 is affected.
- Version QCM4490 is affected.
- Version QCM6125 is affected.
- Version QCM6490 is affected.
- Version QCM8550 is affected.
- Version QCN5021 is affected.
- Version QCN5022 is affected.
- Version QCN5024 is affected.
- Version QCN5052 is affected.
- Version QCN5054 is affected.
- Version QCN5122 is affected.
- Version QCN5124 is affected.
- Version QCN5152 is affected.
- Version QCN5154 is affected.
- Version QCN6024 is affected.
- Version QCN6100 is affected.
- Version QCN6102 is affected.
- Version QCN6112 is affected.
- Version QCN6122 is affected.
- Version QCN6132 is affected.
- Version QCN6224 is affected.
- Version QCN6274 is affected.
- Version QCN6402 is affected.
- Version QCN6412 is affected.
- Version QCN6422 is affected.
- Version QCN6432 is affected.
- Version QCN7605 is affected.
- Version QCN7606 is affected.
- Version QCN9000 is affected.
- Version QCN9001 is affected.
- Version QCN9002 is affected.
- Version QCN9003 is affected.
- Version QCN9011 is affected.
- Version QCN9012 is affected.
- Version QCN9022 is affected.
- Version QCN9024 is affected.
- Version QCN9074 is affected.
- Version QCN9274 is affected.
- Version QCS2290 is affected.
- Version QCS410 is affected.
- Version QCS4290 is affected.
- Version QCS4490 is affected.
- Version QCS610 is affected.
- Version QCS6125 is affected.
- Version QCS6490 is affected.
- Version QCS7230 is affected.
- Version QCS8250 is affected.
- Version QCS8550 is affected.
- Version QEP8111 is affected.
- Version QFW7114 is affected.
- Version QFW7124 is affected.
- Version QRB5165M is affected.
- Version QRB5165N is affected.
- Version QSM8250 is affected.
- Version QSM8350 is affected.
- Version Qualcomm Video Collaboration VC1 Platform is affected.
- Version Qualcomm Video Collaboration VC3 Platform is affected.
- Version Qualcomm Video Collaboration VC5 Platform is affected.
- Version Robotics RB3 Platform is affected.
- Version Robotics RB5 Platform is affected.
- Version SA4150P is affected.
- Version SA4155P is affected.
- Version SA6145P is affected.
- Version SA6150P is affected.
- Version SA6155 is affected.
- Version SA6155P is affected.
- Version SA8145P is affected.
- Version SA8150P is affected.
- Version SA8155 is affected.
- Version SA8155P is affected.
- Version SA8195P is affected.
- Version SA8255P is affected.
- Version SA8295P is affected.
- Version SA8650P is affected.
- Version SA8770P is affected.
- Version SA8775P is affected.
- Version SA9000P is affected.
- Version SC8180X+SDX55 is affected.
- Version SC8380XP is affected.
- Version SD 675 is affected.
- Version SD 8 Gen1 5G is affected.
- Version SD 8CX is affected.
- Version SD460 is affected.
- Version SD660 is affected.
- Version SD662 is affected.
- Version SD670 is affected.
- Version SD675 is affected.
- Version SD730 is affected.
- Version SD855 is affected.
- Version SD865 5G is affected.
- Version SD888 is affected.
- Version SDX55 is affected.
- Version SG4150P is affected.
- Version SG8275P is affected.
- Version SM4125 is affected.
- Version SM6250 is affected.
- Version SM6250P is affected.
- Version SM7250P is affected.
- Version SM7315 is affected.
- Version SM7325P is affected.
- Version SM8550P is affected.
- Version Smart Audio 400 Platform is affected.
- Version Snapdragon 4 Gen 1 Mobile Platform is affected.
- Version Snapdragon 4 Gen 2 Mobile Platform is affected.
- Version Snapdragon 460 Mobile Platform is affected.
- Version Snapdragon 480 5G Mobile Platform is affected.
- Version Snapdragon 480+ 5G Mobile Platform (SM4350-AC) is affected.
- Version Snapdragon 660 Mobile Platform is affected.
- Version Snapdragon 662 Mobile Platform is affected.
- Version Snapdragon 665 Mobile Platform is affected.
- Version Snapdragon 670 Mobile Platform is affected.
- Version Snapdragon 675 Mobile Platform is affected.
- Version Snapdragon 678 Mobile Platform (SM6150-AC) is affected.
- Version Snapdragon 680 4G Mobile Platform is affected.
- Version Snapdragon 685 4G Mobile Platform (SM6225-AD) is affected.
- Version Snapdragon 690 5G Mobile Platform is affected.
- Version Snapdragon 695 5G Mobile Platform is affected.
- Version Snapdragon 710 Mobile Platform is affected.
- Version Snapdragon 712 Mobile Platform is affected.
- Version Snapdragon 720G Mobile Platform is affected.
- Version Snapdragon 730 Mobile Platform (SM7150-AA) is affected.
- Version Snapdragon 730G Mobile Platform (SM7150-AB) is affected.
- Version Snapdragon 732G Mobile Platform (SM7150-AC) is affected.
- Version Snapdragon 750G 5G Mobile Platform is affected.
- Version Snapdragon 765 5G Mobile Platform (SM7250-AA) is affected.
- Version Snapdragon 765G 5G Mobile Platform (SM7250-AB) is affected.
- Version Snapdragon 768G 5G Mobile Platform (SM7250-AC) is affected.
- Version Snapdragon 778G 5G Mobile Platform is affected.
- Version Snapdragon 778G+ 5G Mobile Platform (SM7325-AE) is affected.
- Version Snapdragon 780G 5G Mobile Platform is affected.
- Version Snapdragon 782G Mobile Platform (SM7325-AF) is affected.
- Version Snapdragon 7c Compute Platform (SC7180-AC) is affected.
- Version Snapdragon 7c Gen 2 Compute Platform (SC7180-AD) "Rennell Pro" is affected.
- Version Snapdragon 7c+ Gen 3 Compute is affected.
- Version Snapdragon 8 Gen 1 Mobile Platform is affected.
- Version Snapdragon 8 Gen 2 Mobile Platform is affected.
- Version Snapdragon 8 Gen 3 Mobile Platform is affected.
- Version Snapdragon 8+ Gen 1 Mobile Platform is affected.
- Version Snapdragon 8+ Gen 2 Mobile Platform is affected.
- Version Snapdragon 845 Mobile Platform is affected.
- Version Snapdragon 850 Mobile Compute Platform is affected.
- Version Snapdragon 855 Mobile Platform is affected.
- Version Snapdragon 855+/860 Mobile Platform (SM8150-AC) is affected.
- Version Snapdragon 865 5G Mobile Platform is affected.
- Version Snapdragon 865+ 5G Mobile Platform (SM8250-AB) is affected.
- Version Snapdragon 870 5G Mobile Platform (SM8250-AC) is affected.
- Version Snapdragon 888 5G Mobile Platform is affected.
- Version Snapdragon 888+ 5G Mobile Platform (SM8350-AC) is affected.
- Version Snapdragon 8c Compute Platform (SC8180X-AD) "Poipu Lite" is affected.
- Version Snapdragon 8c Compute Platform (SC8180XP-AD) "Poipu Lite" is affected.
- Version Snapdragon 8cx Compute Platform (SC8180X-AA, AB) is affected.
- Version Snapdragon 8cx Compute Platform (SC8180XP-AC, AF) "Poipu Pro" is affected.
- Version Snapdragon 8cx Gen 2 5G Compute Platform (SC8180X-AC, AF) "Poipu Pro" is affected.
- Version Snapdragon 8cx Gen 2 5G Compute Platform (SC8180XP-AA, AB) is affected.
- Version Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB, BB) is affected.
- Version Snapdragon AR2 Gen 1 Platform is affected.
- Version Snapdragon Auto 5G Modem-RF is affected.
- Version Snapdragon Auto 5G Modem-RF Gen 2 is affected.
- Version Snapdragon W5+ Gen 1 Wearable Platform is affected.
- Version Snapdragon X35 5G Modem-RF System is affected.
- Version Snapdragon X50 5G Modem-RF System is affected.
- Version Snapdragon X55 5G Modem-RF System is affected.
- Version Snapdragon X65 5G Modem-RF System is affected.
- Version Snapdragon X75 5G Modem-RF System is affected.
- Version Snapdragon XR1 Platform is affected.
- Version Snapdragon XR2 5G Platform is affected.
- Version Snapdragon XR2+ Gen 1 Platform is affected.
- Version Snapdragon Auto 4G Modem is affected.
- Version SRV1H is affected.
- Version SRV1M is affected.
- Version SSG2115P is affected.
- Version SSG2125P is affected.
- Version SW5100 is affected.
- Version SW5100P is affected.
- Version SXR1120 is affected.
- Version SXR1230P is affected.
- Version SXR2130 is affected.
- Version SXR2230P is affected.
- Version Vision Intelligence 300 Platform is affected.
- Version Vision Intelligence 400 Platform is affected.
- Version WCD9326 is affected.
- Version WCD9335 is affected.
- Version WCD9340 is affected.
- Version WCD9341 is affected.
- Version WCD9360 is affected.
- Version WCD9370 is affected.
- Version WCD9371 is affected.
- Version WCD9375 is affected.
- Version WCD9380 is affected.
- Version WCD9385 is affected.
- Version WCD9390 is affected.
- Version WCD9395 is affected.
- Version WCN3910 is affected.
- Version WCN3950 is affected.
- Version WCN3980 is affected.
- Version WCN3988 is affected.
- Version WCN3990 is affected.
- Version WCN3999 is affected.
- Version WCN6740 is affected.
- Version WSA8810 is affected.
- Version WSA8815 is affected.
- Version WSA8830 is affected.
- Version WSA8832 is affected.
- Version WSA8835 is affected.
- Version WSA8840 is affected.
- Version WSA8845 is affected.
- Version WSA8845H is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.