📦 Qcn6023 Firmware

by Qualcomm

🔍 What is Qcn6023 Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-45569

CRITICAL CVSS 9.8 Feb 3, 2025

This vulnerability allows remote attackers to execute arbitrary code or cause denial of service by sending specially crafted ML IE frames to affected Qualcomm devices. It affects systems using Qualcom...

CVE-2024-33066

CRITICAL CVSS 9.8 Oct 7, 2024

This vulnerability allows memory corruption when log files are redirected to arbitrary file locations with arbitrary names. It affects systems using Qualcomm components that handle log redirection fun...

CVE-2024-21473

CRITICAL CVSS 9.8 Apr 1, 2024

This vulnerability allows memory corruption when redirecting log files to arbitrary locations with arbitrary filenames in Qualcomm components. It affects devices using Qualcomm chipsets and software. ...

CVE-2023-43552

CRITICAL CVSS 9.8 Mar 4, 2024

This vulnerability allows remote attackers to execute arbitrary code or cause denial of service via memory corruption when processing specially crafted MBSSID beacon frames containing multiple subelem...

CVE-2023-28578

CRITICAL CVSS 9.3 Mar 4, 2024

CVE-2023-28578 is a memory corruption vulnerability in Qualcomm Core Services that occurs when removing a single event listener. This allows attackers to potentially execute arbitrary code or cause de...

CVE-2023-33032

CRITICAL CVSS 9.3 Jan 2, 2024

This vulnerability allows memory corruption in the TrustZone Secure OS when requesting memory allocation from the Trusted Application region. It affects Qualcomm chipsets with TrustZone technology, po...

CVE-2023-33082

CRITICAL CVSS 9.8 Dec 5, 2023

This vulnerability allows remote attackers to execute arbitrary code or cause denial of service via memory corruption in Qualcomm Wi-Fi chipsets. It affects devices using vulnerable Qualcomm wireless ...

CVE-2023-33045

CRITICAL CVSS 9.8 Nov 7, 2023

This vulnerability allows remote attackers to execute arbitrary code or cause denial of service via memory corruption in Qualcomm WLAN firmware when parsing specially crafted NAN management frames. It...

CVE-2023-33028

CRITICAL CVSS 9.8 Oct 3, 2023

This vulnerability allows memory corruption in Qualcomm WLAN firmware during PMK cache operations, potentially enabling remote code execution. It affects devices with vulnerable Qualcomm WLAN chipsets...

CVE-2022-40514

CRITICAL CVSS 9.8 Feb 12, 2023

This vulnerability allows remote attackers to execute arbitrary code or cause denial of service on affected devices by exploiting a buffer overflow in WLAN firmware. It affects Qualcomm chipsets used ...

CVE-2022-33279

CRITICAL CVSS 9.8 Feb 12, 2023

CVE-2022-33279 is a critical stack-based buffer overflow vulnerability in Qualcomm WLAN firmware that allows remote code execution when processing malicious WNM (Wireless Network Management) frames. A...

CVE-2021-30275

CRITICAL CVSS 9.3 Jan 3, 2022

This vulnerability is an integer overflow in Qualcomm Snapdragon chipsets that could allow attackers to execute arbitrary code or cause denial of service. It affects multiple Snapdragon product lines ...

CVE-2021-1924

CRITICAL CVSS 9.0 Nov 12, 2021

This vulnerability allows attackers to extract RSA private keys through timing and power side-channel attacks during modular exponentiation in RSA-CRT implementations. It affects Qualcomm Snapdragon c...

CVE-2021-1976

CRITICAL CVSS 9.8 Sep 17, 2021

This critical vulnerability in Qualcomm Snapdragon chipsets allows remote code execution due to a use-after-free memory corruption flaw in Wi-Fi P2P (peer-to-peer) device address validation. Attackers...

CVE-2021-1972

CRITICAL CVSS 9.8 Sep 8, 2021

This vulnerability allows remote attackers to execute arbitrary code on affected Qualcomm Snapdragon devices due to a buffer overflow in the P2P search functionality. Attackers can exploit improper va...

CVE-2021-1965

CRITICAL CVSS 9.8 Jul 13, 2021

CVE-2021-1965 is a critical buffer overflow vulnerability in Qualcomm Snapdragon chipsets affecting multiple product lines. Attackers can exploit this by sending specially crafted MBSSID scan informat...

CVE-2020-11159

CRITICAL CVSS 9.1 Jun 9, 2021

This CVE describes a buffer over-read vulnerability in Qualcomm Snapdragon chipsets when processing WPA/RSN information elements in Wi-Fi beacon and response frames. Attackers can exploit this to read...

CVE-2020-11126

CRITICAL CVSS 9.1 Jun 9, 2021

This vulnerability allows attackers to read memory beyond intended boundaries while parsing WLAN frames in Qualcomm Snapdragon chipsets. It affects numerous Snapdragon product lines including Auto, Mo...

CVE-2020-11276

CRITICAL CVSS 9.1 Feb 22, 2021

This vulnerability is a buffer over-read in Qualcomm Snapdragon chipsets that occurs when processing Wi-Fi P2P (Peer-to-Peer) information elements and NOA (Notice of Absence) attributes in beacon and ...

CVE-2025-47339

HIGH CVSS 7.8 Jan 7, 2026

This vulnerability involves memory corruption during HDCP session deinitialization, potentially allowing attackers to execute arbitrary code or cause denial of service. It affects systems using Qualco...

CVE-2025-27074

HIGH CVSS 8.8 Nov 4, 2025

This vulnerability involves memory corruption while processing a GP command response in Qualcomm components, potentially allowing attackers to execute arbitrary code or cause denial of service. It aff...

CVE-2025-27059

HIGH CVSS 8.8 Oct 9, 2025

This vulnerability allows memory corruption during SCM (System Control Manager) calls in Qualcomm components, potentially enabling privilege escalation or remote code execution. It affects devices usi...

CVE-2025-47318

HIGH CVSS 7.5 Sep 24, 2025

This vulnerability allows attackers to cause a denial of service (DoS) condition by sending specially crafted EPTM test control messages. It affects systems using Qualcomm components that process thes...

CVE-2025-27073

HIGH CVSS 7.5 Aug 6, 2025

This vulnerability allows attackers to cause a Denial of Service (DoS) condition by exploiting a flaw in the Neighbor Discovery Protocol (NDP) instance creation process. It affects systems using Qualc...

CVE-2025-27043

HIGH CVSS 7.8 Jul 8, 2025

This vulnerability allows memory corruption in Qualcomm video firmware when processing manipulated payloads. Attackers could potentially execute arbitrary code or cause denial of service. Affects devi...

CVE-2025-21446

HIGH CVSS 7.5 Jul 8, 2025

This vulnerability allows a denial-of-service (DoS) condition in Qualcomm wireless LAN (WLAN) chipsets when processing vendor-specific information elements in BTM (BSS Transition Management) request f...

CVE-2025-21463

HIGH CVSS 7.5 Jun 3, 2025

This vulnerability allows an attacker to cause a Denial of Service (DoS) condition by sending specially crafted beacon frames containing EHT operation information elements. It affects systems using Qu...

CVE-2024-43057

HIGH CVSS 7.8 Mar 3, 2025

CVE-2024-43057 is a use-after-free vulnerability in the Glink Linux driver that allows memory corruption when processing commands. This could enable local privilege escalation or denial of service att...

CVE-2024-49839

HIGH CVSS 8.2 Feb 3, 2025

This vulnerability allows memory corruption during Wi-Fi management frame processing due to a mismatch in T2LM (Target Wake Time Link Management) information elements. Attackers within Wi-Fi range cou...

CVE-2024-45558

HIGH CVSS 7.5 Jan 6, 2025

This vulnerability in Qualcomm Wi-Fi drivers allows attackers to cause a denial-of-service (DoS) condition by sending specially crafted packets. The driver fails to properly validate the length of per...

CVE-2024-33073

HIGH CVSS 8.2 Oct 7, 2024

This vulnerability allows attackers to read sensitive information from Wi-Fi chipsets when parsing Multi-Link Device (MLD) information elements. It affects devices with Qualcomm Wi-Fi chipsets that ha...

CVE-2024-33049

HIGH CVSS 7.5 Oct 7, 2024

This vulnerability allows an attacker to cause a denial-of-service (DoS) condition by sending specially crafted beacon frames with specific Extension element parameters. It affects systems using Qualc...

CVE-2024-33048

HIGH CVSS 7.5 Sep 2, 2024

This vulnerability allows an attacker to cause a denial-of-service (DoS) condition by sending specially crafted beacon or probe response frames to affected Wi-Fi devices. The issue occurs during parsi...

CVE-2024-33024

HIGH CVSS 7.5 Aug 5, 2024

This vulnerability allows an attacker to cause a Denial of Service (DoS) by sending specially crafted Wi-Fi beacon frames with malformed Multi-Link (ML) Information Elements. It affects devices using ...

CVE-2024-33026

HIGH CVSS 7.5 Aug 5, 2024

This vulnerability allows an attacker to cause a denial-of-service condition in affected Qualcomm Wi-Fi components by sending specially crafted probe response or association response frames with malfo...

CVE-2024-33018

HIGH CVSS 7.5 Aug 5, 2024

This vulnerability allows an attacker to cause a denial-of-service (DoS) condition by sending specially crafted TID-to-link mapping action frames to affected Wi-Fi devices. The vulnerability affects Q...

CVE-2024-33012

HIGH CVSS 7.5 Aug 5, 2024

This vulnerability allows attackers to cause a denial-of-service (DoS) condition in Wi-Fi systems by sending specially crafted beacon frames with malformed MBSSID information elements. It affects devi...

CVE-2024-33014

HIGH CVSS 7.5 Aug 5, 2024

This vulnerability allows an attacker to cause a Denial of Service (DoS) by sending specially crafted beacon or probe response frames containing malformed ESP IE (Extended Service Period Information E...

CVE-2024-33010

HIGH CVSS 7.5 Aug 5, 2024

This vulnerability allows attackers to cause a denial-of-service (DoS) condition by sending specially crafted MBSSID Information Element fragments in Wi-Fi beacon frames. It affects systems using Qual...

CVE-2024-23368

HIGH CVSS 7.8 Jul 1, 2024

This CVE describes a memory corruption vulnerability in Qualcomm's Shared Memory (SMEM) subsystem that could allow attackers to execute arbitrary code or cause denial of service. The vulnerability aff...

CVE-2024-21462

HIGH CVSS 7.1 Jul 1, 2024

This vulnerability allows a denial-of-service attack when loading Trusted Application (TA) ELF files on Qualcomm chipsets. It affects devices using Qualcomm processors with vulnerable firmware. Attack...

CVE-2023-33105

HIGH CVSS 7.5 Mar 4, 2024

This vulnerability allows attackers to cause a denial-of-service (DoS) condition in Qualcomm WLAN systems by sending a large number of malformed authentication frames with invalid transaction sequence...

CVE-2023-43522

HIGH CVSS 7.5 Feb 6, 2024

This vulnerability in Qualcomm chipsets allows a denial-of-service attack when processing empty or NULL encrypted keys during key unwrapping. It affects devices using vulnerable Qualcomm components, p...

CVE-2023-43511

HIGH CVSS 7.5 Jan 2, 2024

This vulnerability allows attackers to cause a denial-of-service (DoS) condition in Qualcomm WLAN firmware by sending specially crafted IPv6 packets with IPPROTO_NONE as the next header in extension h...

CVE-2023-33116

HIGH CVSS 7.5 Jan 2, 2024

This vulnerability in Qualcomm's WIN WLAN driver allows a denial-of-service (DoS) attack when parsing specific wireless network management frames. Attackers can send specially crafted packets to crash...

CVE-2023-33097

HIGH CVSS 7.5 Dec 5, 2023

This vulnerability allows attackers to cause a temporary denial-of-service (DoS) in WLAN firmware by sending specially crafted Fast Transition Management Request (FTMR) frames. It affects devices with...

CVE-2023-33089

HIGH CVSS 7.5 Dec 5, 2023

This vulnerability allows attackers to cause a denial-of-service (DoS) condition by sending specially crafted WLAN packets that trigger a NULL pointer dereference in the wireless driver. It affects de...

CVE-2023-33081

HIGH CVSS 7.5 Dec 5, 2023

CVE-2023-33081 is a buffer overflow vulnerability in Qualcomm chipsets that occurs when processing Target Wake Time (TWT) frame parameters in over-the-air broadcasts. This vulnerability allows attacke...

CVE-2023-33041

HIGH CVSS 7.5 Dec 5, 2023

This vulnerability in Qualcomm WLAN firmware allows attackers to cause denial of service through a firmware crash when specific wireless network conditions trigger state confusion. It affects devices ...

CVE-2023-33053

HIGH CVSS 8.4 Dec 5, 2023

This vulnerability allows memory corruption in Qualcomm kernel components when parsing metadata, potentially enabling local privilege escalation or denial of service. It affects devices with Qualcomm ...

CVE-2023-28585

HIGH CVSS 8.2 Dec 5, 2023

This vulnerability allows memory corruption while loading ELF segments in the Trusted Execution Environment (TEE) kernel. Attackers could potentially execute arbitrary code in the TEE, compromising se...

CVE-2023-33048

HIGH CVSS 7.5 Nov 7, 2023

CVE-2023-33048 is a buffer overflow vulnerability in Qualcomm WLAN firmware that allows attackers to cause a denial-of-service (DoS) condition by sending specially crafted t2lm frames. This affects de...

CVE-2023-33056

HIGH CVSS 7.5 Nov 7, 2023

This vulnerability allows a denial-of-service attack against WLAN firmware when it receives a specially crafted beacon frame containing a T2LM (Target Wake Time Link Management) Information Element. A...

CVE-2023-33061

HIGH CVSS 7.5 Nov 7, 2023

This vulnerability allows attackers to cause a denial-of-service (DoS) condition in affected devices by sending specially crafted WLAN beacon or probe-response frames. It affects devices with Qualcomm...

CVE-2023-24852

HIGH CVSS 8.4 Nov 7, 2023

This vulnerability allows memory corruption in Qualcomm's Core due to improper secure memory access while loading modem images. Attackers could potentially execute arbitrary code or cause denial of se...

CVE-2023-33026

HIGH CVSS 7.5 Oct 3, 2023

This vulnerability allows attackers to cause a temporary denial-of-service (DoS) in affected Wi-Fi devices by sending specially crafted NAN (Neighborhood Aware Networking) management frames. The flaw ...

CVE-2023-28565

HIGH CVSS 7.8 Sep 5, 2023

This vulnerability allows memory corruption in Qualcomm's WLAN Hardware Abstraction Layer (HAL) when processing command streams through WMI interfaces. Attackers could potentially execute arbitrary co...

CVE-2023-28573

HIGH CVSS 7.8 Sep 5, 2023

This vulnerability allows memory corruption in Qualcomm's WLAN Hardware Abstraction Layer (HAL) when parsing WMI command parameters. Attackers could potentially execute arbitrary code or cause denial ...

CVE-2023-33015

HIGH CVSS 7.5 Sep 5, 2023

This vulnerability allows an attacker to cause a denial-of-service (DoS) condition in Qualcomm WLAN firmware by sending specially crafted beacon frames with malformed MBSSID information elements. It a...

CVE-2025-47331

MEDIUM CVSS 6.1 Jan 7, 2026

This CVE describes an information disclosure vulnerability in Qualcomm firmware that leaks sensitive data when processing firmware events. It affects devices using vulnerable Qualcomm chipsets, potent...

CVE-2025-47325

MEDIUM CVSS 6.5 Dec 18, 2025

This vulnerability allows attackers to access sensitive information by exploiting improper handling of system calls with invalid parameters. It affects systems using Qualcomm chipsets with vulnerable ...

CVE-2025-27040

MEDIUM CVSS 6.5 Oct 9, 2025

This CVE describes an information disclosure vulnerability in Qualcomm hypervisor logs that could expose sensitive system information. The vulnerability affects devices using Qualcomm chipsets with vu...

CVE-2025-21464

MEDIUM CVSS 6.5 Aug 6, 2025

This vulnerability allows attackers to read sensitive information from image processing operations by manipulating offset and size parameters. It affects systems using Qualcomm components with vulnera...

CVE-2025-21465

MEDIUM CVSS 6.5 Aug 6, 2025

This vulnerability allows attackers to read sensitive information from memory when processing specially crafted MBN files. It affects systems using Qualcomm chipsets that process MBN files, potentiall...

CVE-2024-21467

MEDIUM CVSS 6.5 Aug 5, 2024

This vulnerability allows information disclosure when handling beacon probe frames during scan entry generation on client devices. It affects devices with Qualcomm Wi-Fi chipsets that process wireless...

CVE-2024-21457

MEDIUM CVSS 6.5 Jul 1, 2024

This vulnerability allows information disclosure when handling Multi-link Information Elements in Wi-Fi beacon frames. It affects devices with Qualcomm Wi-Fi chipsets that process these frames, potent...