← Retour aux CVEs
CVE-2023-28582
CRITICAL9.8
Description
Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
Details CVE
Score CVSS v3.19.8
SeveriteCRITICAL
Vecteur CVSSCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vecteur d'attaqueNETWORK
ComplexiteLOW
Privileges requisNONE
Interaction utilisateurNONE
Publie3/4/2024
Derniere modification1/10/2025
Sourcenvd
Observations honeypot0
Produits affectes
qualcomm:ar8035qualcomm:ar8035_firmwarequalcomm:fastconnect_6700qualcomm:fastconnect_6700_firmwarequalcomm:fastconnect_6900qualcomm:fastconnect_6900_firmwarequalcomm:fastconnect_7800qualcomm:fastconnect_7800_firmwarequalcomm:qca6584auqualcomm:qca6584au_firmwarequalcomm:qca6698aqqualcomm:qca6698aq_firmwarequalcomm:qca8081qualcomm:qca8081_firmwarequalcomm:qca8337qualcomm:qca8337_firmwarequalcomm:qcc710qualcomm:qcc710_firmwarequalcomm:qcm4490qualcomm:qcm4490_firmwarequalcomm:qcm8550qualcomm:qcm8550_firmwarequalcomm:qcn6024qualcomm:qcn6024_firmwarequalcomm:qcn6224qualcomm:qcn6224_firmwarequalcomm:qcn6274qualcomm:qcn6274_firmwarequalcomm:qcn9024qualcomm:qcn9024_firmwarequalcomm:qcs4490qualcomm:qcs4490_firmwarequalcomm:qfw7114qualcomm:qfw7114_firmwarequalcomm:qfw7124qualcomm:qfw7124_firmwarequalcomm:sm8550pqualcomm:sm8550p_firmwarequalcomm:snapdragon_4_gen_2_mobilequalcomm:snapdragon_4_gen_2_mobile_firmwarequalcomm:snapdragon_8\+_gen_2_mobilequalcomm:snapdragon_8\+_gen_2_mobile_firmwarequalcomm:snapdragon_8_gen_2_mobilequalcomm:snapdragon_8_gen_2_mobile_firmwarequalcomm:snapdragon_8_gen_3_mobilequalcomm:snapdragon_8_gen_3_mobile_firmwarequalcomm:snapdragon_auto_5g_modem-rf_gen_2qualcomm:snapdragon_auto_5g_modem-rf_gen_2_firmwarequalcomm:snapdragon_x65_5g_modem-rfqualcomm:snapdragon_x65_5g_modem-rf_firmwarequalcomm:snapdragon_x70_modem-rfqualcomm:snapdragon_x70_modem-rf_firmwarequalcomm:snapdragon_x75_5g_modem-rfqualcomm:snapdragon_x75_5g_modem-rf_firmwarequalcomm:wcd9340qualcomm:wcd9340_firmwarequalcomm:wcd9370qualcomm:wcd9370_firmwarequalcomm:wcd9380qualcomm:wcd9380_firmwarequalcomm:wcd9385qualcomm:wcd9385_firmwarequalcomm:wcd9390qualcomm:wcd9390_firmwarequalcomm:wcd9395qualcomm:wcd9395_firmwarequalcomm:wcn3950qualcomm:wcn3950_firmwarequalcomm:wcn3988qualcomm:wcn3988_firmwarequalcomm:wsa8810qualcomm:wsa8810_firmwarequalcomm:wsa8815qualcomm:wsa8815_firmwarequalcomm:wsa8830qualcomm:wsa8830_firmwarequalcomm:wsa8832qualcomm:wsa8832_firmwarequalcomm:wsa8835qualcomm:wsa8835_firmwarequalcomm:wsa8840qualcomm:wsa8840_firmwarequalcomm:wsa8845qualcomm:wsa8845_firmwarequalcomm:wsa8845hqualcomm:wsa8845h_firmware
Faiblesses (CWE)
CWE-120CWE-787
References
https://www.qualcomm.com/company/product-security/bulletins/march-2024-bulletin(product-security@qualcomm.com)
https://www.qualcomm.com/company/product-security/bulletins/march-2024-bulletin(af854a3a-2127-422b-91ae-364da2661108)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.