CVE-2023-43524
MEDIUMDescription
Memory corruption when the bandpass filter order received from AHAL is not within the expected range.
Is your site exposed to CVE-2023-43524?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| qualcomm | ar8035_firmware |
| qualcomm | ar8035 |
| qualcomm | fastconnect_6800_firmware |
| qualcomm | fastconnect_6800 |
| qualcomm | fastconnect_6900_firmware |
| qualcomm | fastconnect_6900 |
| qualcomm | fastconnect_7800_firmware |
| qualcomm | fastconnect_7800 |
| qualcomm | qam8255p_firmware |
| qualcomm | qam8255p |
| qualcomm | qam8295p_firmware |
| qualcomm | qam8295p |
| qualcomm | qam8650p_firmware |
| qualcomm | qam8650p |
| qualcomm | qam8775p_firmware |
| qualcomm | qam8775p |
| qualcomm | qamsrv1h_firmware |
| qualcomm | qamsrv1h |
| qualcomm | qamsrv1m_firmware |
| qualcomm | qamsrv1m |
| qualcomm | qca6391_firmware |
| qualcomm | qca6391 |
| qualcomm | qca6426_firmware |
| qualcomm | qca6426 |
| qualcomm | qca6436_firmware |
| qualcomm | qca6436 |
| qualcomm | qca6574au_firmware |
| qualcomm | qca6574au |
| qualcomm | qca6584au_firmware |
| qualcomm | qca6584au |
| qualcomm | qca6696_firmware |
| qualcomm | qca6696 |
| qualcomm | qca6698aq_firmware |
| qualcomm | qca6698aq |
| qualcomm | qca8081_firmware |
| qualcomm | qca8081 |
| qualcomm | qca8337_firmware |
| qualcomm | qca8337 |
| qualcomm | qca9367_firmware |
| qualcomm | qca9367 |
| qualcomm | qca9377_firmware |
| qualcomm | qca9377 |
| qualcomm | qcc710_firmware |
| qualcomm | qcc710 |
| qualcomm | qcn6224_firmware |
| qualcomm | qcn6224 |
| qualcomm | qcn6274_firmware |
| qualcomm | qcn6274 |
| qualcomm | qfw7114_firmware |
| qualcomm | qfw7114 |
| qualcomm | qfw7124_firmware |
| qualcomm | qfw7124 |
| qualcomm | sa6145p_firmware |
| qualcomm | sa6145p |
| qualcomm | sa6150p_firmware |
| qualcomm | sa6150p |
| qualcomm | sa6155p_firmware |
| qualcomm | sa6155p |
| qualcomm | sa7255p_firmware |
| qualcomm | sa7255p |
| qualcomm | sa8145p_firmware |
| qualcomm | sa8145p |
| qualcomm | sa8150p_firmware |
| qualcomm | sa8150p |
| qualcomm | sa8155p_firmware |
| qualcomm | sa8155p |
| qualcomm | sa8195p_firmware |
| qualcomm | sa8195p |
| qualcomm | sa8255p_firmware |
| qualcomm | sa8255p |
| qualcomm | sa8295p_firmware |
| qualcomm | sa8295p |
| qualcomm | sa8620p_firmware |
| qualcomm | sa8620p |
| qualcomm | sa8650p_firmware |
| qualcomm | sa8650p |
| qualcomm | sa8770p_firmware |
| qualcomm | sa8770p |
| qualcomm | sa8775p_firmware |
| qualcomm | sa8775p |
| qualcomm | sa9000p_firmware |
| qualcomm | sa9000p |
| qualcomm | sd865_5g_firmware |
| qualcomm | sd865_5g |
| qualcomm | snapdragon_865_5g_mobile_firmware |
| qualcomm | snapdragon_865_5g_mobile |
| qualcomm | snapdragon_865\+_5g_mobile_firmware |
| qualcomm | snapdragon_865\+_5g_mobile |
| qualcomm | snapdragon_870_5g_mobile_firmware |
| qualcomm | snapdragon_870_5g_mobile |
| qualcomm | snapdragon_auto_5g_modem-rf_gen_2_firmware |
| qualcomm | snapdragon_auto_5g_modem-rf_gen_2 |
| qualcomm | snapdragon_x55_5g_modem-rf_firmware |
| qualcomm | snapdragon_x55_5g_modem-rf |
| qualcomm | snapdragon_x72_5g_modem-rf_firmware |
| qualcomm | snapdragon_x72_5g_modem-rf |
| qualcomm | snapdragon_x75_5g_modem-rf_firmware |
| qualcomm | snapdragon_x75_5g_modem-rf |
| qualcomm | snapdragon_xr2_5g_platform_firmware |
| qualcomm | snapdragon_xr2_5g_platform |
| qualcomm | srv1h_firmware |
| qualcomm | srv1h |
| qualcomm | srv1m_firmware |
| qualcomm | srv1m |
| qualcomm | sxr2130_firmware |
| qualcomm | sxr2130 |
| qualcomm | wcd9340_firmware |
| qualcomm | wcd9340 |
| qualcomm | wcd9380_firmware |
| qualcomm | wcd9380 |
| qualcomm | wsa8810_firmware |
| qualcomm | wsa8810 |
| qualcomm | wsa8815_firmware |
| qualcomm | wsa8815 |
References
Frequently Asked Questions
What is CVE-2023-43524? +
How severe is CVE-2023-43524? +
What products are affected by CVE-2023-43524? +
How do I check if I'm vulnerable to CVE-2023-43524? +
Related Vulnerabilities
zlib is a Ruby interface for the zlib compression/decompression library. Versions 3.0.0 and below, 3.1.0, 3.1.1, 3.2.0 and 3.2.1 contain …
A denial-of-service issue exists in 5380/5480/5580 controllers boot firmware lower than version 1.072. This vulnerability could potentially allow a malicious …
A denial-of-service issue exists in 5380/5480/5580 controllers. This vulnerability could potentially allow a malicious user to write invalid file data …
A denial-of-service issue exists in 5370/5570 controllers. This vulnerability could potentially allow a remote user to load an invalid project, …
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Newtec NTC2218, NTC2250, NTC2299 on Linux, PowerPC, ARM …
An unauthenticated attacker on the WAN interface, with the ability to intercept Dynamic DNS (DDNS) traffic between DDNS services and …