Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client.
References
Link | Resource |
---|---|
https://www.qualcomm.com/company/product-security/bulletins/july-2023-bulletin | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
AND |
|
Configuration 16 (hide)
AND |
|
Configuration 17 (hide)
AND |
|
Configuration 18 (hide)
AND |
|
Configuration 19 (hide)
AND |
|
Configuration 20 (hide)
AND |
|
Configuration 21 (hide)
AND |
|
Configuration 22 (hide)
AND |
|
History
11 Jul 2023, 13:30
Type | Values Removed | Values Added |
---|---|---|
First Time |
Qualcomm snapdragon 855
Qualcomm wcn3988 Qualcomm wcn3980 Qualcomm wsa8830 Qualcomm wsa8810 Firmware Qualcomm sa6155p Qualcomm sa8155p Firmware Qualcomm snapdragon W5\+ Gen 1 Firmware Qualcomm aqt1000 Firmware Qualcomm snapdragon 855 Firmware Qualcomm qca6420 Firmware Qualcomm sw5100p Qualcomm sw5100 Qualcomm qca6430 Qualcomm sa4155p Qualcomm wsa8810 Qualcomm wsa8815 Qualcomm qca6420 Qualcomm wcn3988 Firmware Qualcomm aqt1000 Qualcomm sw5100 Firmware Qualcomm sa8155p Qualcomm wcd9341 Qualcomm sd855 Qualcomm sa8195p Firmware Qualcomm Qualcomm snapdragon W5\+ Gen 1 Qualcomm sa6155p Firmware Qualcomm sa8195p Qualcomm sa4150p Qualcomm wsa8830 Firmware Qualcomm wcd9341 Firmware Qualcomm wsa8835 Firmware Qualcomm wcn3980 Firmware Qualcomm sw5100p Firmware Qualcomm fastconnect 6200 Qualcomm snapdragon 855\+\/860 Firmware Qualcomm qca6430 Firmware Qualcomm sd855 Firmware Qualcomm wsa8815 Firmware Qualcomm fastconnect 6200 Firmware Qualcomm wsa8835 Qualcomm snapdragon 855\+\/860 Qualcomm sa4150p Firmware Qualcomm sa4155p Firmware |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
CWE | CWE-787 | |
References | (MISC) https://www.qualcomm.com/company/product-security/bulletins/july-2023-bulletin - Vendor Advisory | |
CPE | cpe:2.3:o:qualcomm:sw5100p_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sa4150p:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:aqt1000_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sa4155p:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sa4155p_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sw5100_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sd855_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:qca6420:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sa8155p:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:fastconnect_6200_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:snapdragon_855\+\/860_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn3980_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcn3988_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:qca6420_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sw5100p:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8810_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8815_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8815:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:snapdragon_w5\+_gen_1_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wcd9341_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn3988:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcd9341:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:fastconnect_6200:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:snapdragon_855:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:snapdragon_855\+\/860:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:qca6430:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wcn3980:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sa8195p:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sd855:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sa4150p_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:aqt1000:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:snapdragon_855_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:sa8195p_firmware:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:wsa8810:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:snapdragon_w5\+_gen_1:-:*:*:*:*:*:*:* cpe:2.3:h:qualcomm:sw5100:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:qca6430_firmware:-:*:*:*:*:*:*:* cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:* |
04 Jul 2023, 05:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-04 05:15
Updated : 2024-04-12 17:16
NVD link : CVE-2023-21639
Mitre link : CVE-2023-21639
JSON object : View
Products Affected
qualcomm
- sw5100_firmware
- wsa8810
- sa8155p_firmware
- sa8195p_firmware
- aqt1000_firmware
- snapdragon_855\+\/860
- snapdragon_w5\+_gen_1_firmware
- sw5100
- sw5100p
- sa4155p
- wcn3988
- sa6155p
- sa4150p
- wsa8815
- aqt1000
- qca6430_firmware
- wsa8835
- wcn3988_firmware
- sw5100p_firmware
- fastconnect_6200_firmware
- wcd9341_firmware
- sd855_firmware
- snapdragon_855\+\/860_firmware
- qca6420
- qca6420_firmware
- snapdragon_855
- wsa8830_firmware
- wsa8810_firmware
- qca6430
- sa4150p_firmware
- sa8195p
- sd855
- snapdragon_855_firmware
- sa6155p_firmware
- snapdragon_w5\+_gen_1
- wcn3980_firmware
- wsa8830
- fastconnect_6200
- wsa8835_firmware
- wsa8815_firmware
- wcn3980
- sa8155p
- wcd9341
- sa4155p_firmware
CWE
CWE-787
Out-of-bounds Write