CVE-2023-33025
CRITICALDescription
Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| qualcomm | ar8035_firmware |
| qualcomm | ar8035 |
| qualcomm | fastconnect_6700_firmware |
| qualcomm | fastconnect_6700 |
| qualcomm | fastconnect_6900_firmware |
| qualcomm | fastconnect_6900 |
| qualcomm | qca8081_firmware |
| qualcomm | qca8081 |
| qualcomm | qca8337_firmware |
| qualcomm | qca8337 |
| qualcomm | qcm4490_firmware |
| qualcomm | qcm4490 |
| qualcomm | qcn6024_firmware |
| qualcomm | qcn6024 |
| qualcomm | qcn9024_firmware |
| qualcomm | qcn9024 |
| qualcomm | qcs4490_firmware |
| qualcomm | qcs4490 |
| qualcomm | sm4450_firmware |
| qualcomm | sm4450 |
| qualcomm | snapdragon_680_4g_mobile_platform_firmware |
| qualcomm | snapdragon_680_4g_mobile_platform |
| qualcomm | snapdragon_685_4g_mobile_platform_firmware |
| qualcomm | snapdragon_685_4g_mobile_platform |
| qualcomm | snapdragon_x65_5g_modem-rf_system_firmware |
| qualcomm | snapdragon_x65_5g_modem-rf_system |
| qualcomm | snapdragon_x70_modem-rf_system_firmware |
| qualcomm | snapdragon_x70_modem-rf_system |
| qualcomm | wcd9370_firmware |
| qualcomm | wcd9370 |
| qualcomm | wcd9375_firmware |
| qualcomm | wcd9375 |
| qualcomm | wcd9380_firmware |
| qualcomm | wcd9380 |
| qualcomm | wcn3950_firmware |
| qualcomm | wcn3950 |
| qualcomm | wcn3988_firmware |
| qualcomm | wcn3988 |
| qualcomm | wsa8810_firmware |
| qualcomm | wsa8810 |
| qualcomm | wsa8815_firmware |
| qualcomm | wsa8815 |
| qualcomm | wsa8830_firmware |
| qualcomm | wsa8830 |
| qualcomm | wsa8832_firmware |
| qualcomm | wsa8832 |
| qualcomm | wsa8835_firmware |
| qualcomm | wsa8835 |
References
Frequently Asked Questions
What is CVE-2023-33025? +
How severe is CVE-2023-33025? +
What products are affected by CVE-2023-33025? +
How do I check if I'm vulnerable to CVE-2023-33025? +
Related Vulnerabilities
zlib is a Ruby interface for the zlib compression/decompression library. Versions 3.0.0 and below, 3.1.0, 3.1.1, 3.2.0 and 3.2.1 contain …
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Newtec NTC2218, NTC2250, NTC2299 on Linux, PowerPC, ARM …
An unauthenticated attacker on the WAN interface, with the ability to intercept Dynamic DNS (DDNS) traffic between DDNS services and …
The device exposes a web interface on ports TCP/3030 and TCP/9882. This web service runs lighttpd, which implements the “SNORE” …
A vulnerability has been found in TP-Link TL-WR940N V4 and TL-WR841N V11. Affected by this issue is some unknown functionality …
A buffer overflow vulnerability exists in PDF Shaper versions 3.5 and 3.6 when converting a crafted PDF file to an …