Show filters
219 Total Results
Displaying 1-10 of 219
Sort by:
Attacker Value
Unknown

CVE-2024-49839

Disclosure Date: February 03, 2025 (last updated February 06, 2025)
Memory corruption during management frame processing due to mismatch in T2LM info element.
Attacker Value
Unknown

CVE-2024-45571

Disclosure Date: February 03, 2025 (last updated February 06, 2025)
Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
Attacker Value
Unknown

CVE-2024-45569

Disclosure Date: February 03, 2025 (last updated February 06, 2025)
Memory corruption while parsing the ML IE due to invalid frame content.
Attacker Value
Unknown

CVE-2024-45558

Disclosure Date: January 06, 2025 (last updated January 14, 2025)
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
Attacker Value
Unknown

CVE-2024-43052

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption while processing API calls to NPU with invalid input.
Attacker Value
Unknown

CVE-2024-33063

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside which this element is present.
Attacker Value
Unknown

CVE-2024-33056

Disclosure Date: December 02, 2024 (last updated December 21, 2024)
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
Attacker Value
Unknown

CVE-2024-7392

Disclosure Date: November 22, 2024 (last updated December 21, 2024)
ChargePoint Home Flex Bluetooth Low Energy Denial-of-Service Vulnerability. This vulnerability allows network-adjacent attackers to create a denial-of-service condition on affected installations of ChargePoint Home Flex charging devices. Authentication is not required to exploit this vulnerability. The specific flaw exists within the connection handling of the Bluetooth Low Energy interface. The issue results from limiting the number of active connections to the product. An attacker can leverage this vulnerability to create a denial-of-service condition on the system. Was ZDI-CAN-21455.
Attacker Value
Unknown

CVE-2024-7391

Disclosure Date: November 22, 2024 (last updated December 21, 2024)
ChargePoint Home Flex Bluetooth Low Energy Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of ChargePoint Home Flex charging devices. User interaction is required to exploit this vulnerability. The specific flaw exists within the Wi-Fi setup logic. By connecting to the device over Bluetooth Low Energy during the setup process, an attacker can obtain Wi-Fi credentials. An attacker can leverage this vulnerability to disclose credentials and gain access to the device owner's Wi-Fi network. Was ZDI-CAN-21454.
Attacker Value
Unknown

CVE-2024-38408

Disclosure Date: November 04, 2024 (last updated November 09, 2024)
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.