SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2023-43520

Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.

CRITICAL 9.8EPSS 0.26%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (0.26%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.

CVSS 3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
0.26% probability · 18th percentile
CISA KEV
Not listed
Weakness
CWE-121, CWE-787
Affected
qualcomm/ar8035 firmware · qualcomm/fastconnect 6900 firmware · qualcomm/fastconnect 7800 firmware · qualcomm/flight rb5 5g platform firmware · qualcomm/qam8255p firmware · qualcomm/qam8650p firmware · qualcomm/qam8775p firmware · qualcomm/qamsrv1h firmware · qualcomm/qamsrv1m firmware · qualcomm/qca6391 firmware · qualcomm/qca6554a firmware · qualcomm/qca6564au firmware · qualcomm/qca6574 firmware · qualcomm/qca6574a firmware · qualcomm/qca6574au firmware · qualcomm/qca6584au firmware · qualcomm/qca6595 firmware · qualcomm/qca6595au firmware · qualcomm/qca6688aq firmware · qualcomm/qca6696 firmware · +40 more
Source
product-security@qualcomm.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.