Show filters
64 Total Results
Displaying 31-40 of 64
Sort by:
Attacker Value
Unknown

CVE-2022-33275

Disclosure Date: September 05, 2023 (last updated October 08, 2023)
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
Attacker Value
Unknown

CVE-2023-22387

Disclosure Date: July 04, 2023 (last updated October 08, 2023)
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
Attacker Value
Unknown

CVE-2023-21661

Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Transient DOS while parsing WLAN beacon or probe-response frame.
Attacker Value
Unknown

CVE-2023-21659

Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Transient DOS in WLAN Firmware while processing frames with missing header fields.
Attacker Value
Unknown

CVE-2023-21658

Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Transient DOS in WLAN Firmware while processing the received beacon or probe response frame.
Attacker Value
Unknown

CVE-2023-21628

Disclosure Date: June 06, 2023 (last updated October 08, 2023)
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
Attacker Value
Unknown

CVE-2022-40532

Disclosure Date: April 13, 2023 (last updated October 08, 2023)
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
Attacker Value
Unknown

CVE-2022-40531

Disclosure Date: March 10, 2023 (last updated October 08, 2023)
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
Attacker Value
Unknown

CVE-2022-25655

Disclosure Date: March 10, 2023 (last updated October 08, 2023)
Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.
Attacker Value
Unknown

CVE-2022-40514

Disclosure Date: February 12, 2023 (last updated October 08, 2023)
Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.