CVE-2023-43535

Memory corruption when negative display IDs are sent as input while processing DISPLAYESCAPE event trigger.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6700_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6700:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:qualcomm:sc8380xp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sc8380xp:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_7c\+_gen_3_compute_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_7c\+_gen_3_compute:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:qualcomm:snapdragon_8cx_gen_3_compute_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8cx_gen_3_compute_platform:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*

History

21 Nov 2024, 08:24

Type Values Removed Values Added
References () https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin - Vendor Advisory () https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin - Vendor Advisory
CVSS v2 : unknown
v3 : 7.8
v2 : unknown
v3 : 8.4

08 Feb 2024, 21:11

Type Values Removed Values Added
References () https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin - () https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletin - Vendor Advisory
First Time Qualcomm wsa8840 Firmware
Qualcomm wcd9385
Qualcomm fastconnect 7800
Qualcomm fastconnect 6900
Qualcomm fastconnect 6700
Qualcomm sc8380xp
Qualcomm wsa8840
Qualcomm wsa8835 Firmware
Qualcomm wsa8830 Firmware
Qualcomm sc8380xp Firmware
Qualcomm snapdragon 8cx Gen 3 Compute Platform Firmware
Qualcomm wsa8845
Qualcomm fastconnect 6900 Firmware
Qualcomm wcd9380
Qualcomm fastconnect 6700 Firmware
Qualcomm fastconnect 7800 Firmware
Qualcomm snapdragon 7c\+ Gen 3 Compute Firmware
Qualcomm wsa8845h Firmware
Qualcomm wsa8845 Firmware
Qualcomm wcd9380 Firmware
Qualcomm wcd9385 Firmware
Qualcomm wsa8845h
Qualcomm snapdragon 7c\+ Gen 3 Compute
Qualcomm snapdragon 8cx Gen 3 Compute Platform
Qualcomm wsa8835
Qualcomm
Qualcomm wsa8830
CVSS v2 : unknown
v3 : 8.4
v2 : unknown
v3 : 7.8
CWE CWE-129
CPE cpe:2.3:o:qualcomm:wcd9385_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sc8380xp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_7800:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9385:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_8cx_gen_3_compute_platform:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wcd9380:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6900:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6700_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8835:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_8cx_gen_3_compute_platform_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845h:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:snapdragon_7c\+_gen_3_compute:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sc8380xp:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8835_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:snapdragon_7c\+_gen_3_compute_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8830:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8840:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8840_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wcd9380_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:wsa8845:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6700:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8830_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:wsa8845_firmware:-:*:*:*:*:*:*:*

06 Feb 2024, 13:53

Type Values Removed Values Added
Summary
  • (es) Corrupción de la memoria cuando se envían ID de visualización negativos como entrada mientras se procesa el activador del evento DISPLAYESCAPE.

06 Feb 2024, 06:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-06 06:16

Updated : 2024-11-21 08:24


NVD link : CVE-2023-43535

Mitre link : CVE-2023-43535

CVE.ORG link : CVE-2023-43535


JSON object : View

Products Affected

qualcomm

  • fastconnect_6700_firmware
  • snapdragon_8cx_gen_3_compute_platform_firmware
  • wcd9380
  • wsa8845_firmware
  • wcd9380_firmware
  • wsa8845h
  • wcd9385
  • fastconnect_7800_firmware
  • snapdragon_7c\+_gen_3_compute
  • wcd9385_firmware
  • snapdragon_8cx_gen_3_compute_platform
  • wsa8835_firmware
  • sc8380xp_firmware
  • wsa8845
  • wsa8840
  • wsa8835
  • wsa8840_firmware
  • fastconnect_6900_firmware
  • wsa8845h_firmware
  • fastconnect_7800
  • wsa8830
  • fastconnect_6700
  • fastconnect_6900
  • snapdragon_7c\+_gen_3_compute_firmware
  • wsa8830_firmware
  • sc8380xp
CWE
CWE-129

Improper Validation of Array Index