First published: Mon Mar 04 2024(Updated: )
Memory corruption in Data Modem while verifying hello-verify message during the DTLS handshake.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
All of | ||
Qualcomm AR8035 Firmware | ||
Qualcomm AR8035 Firmware | ||
All of | ||
Qualcomm FastConnect 6700 Firmware | ||
Qualcomm FastConnect 6700 | ||
All of | ||
Qualcomm FastConnect 6900 Firmware | ||
Qualcomm Fastconnect 6900 Firmware | ||
All of | ||
Qualcomm Fastconnect 7800 Firmware | ||
Qualcomm Fastconnect 7800 Firmware | ||
All of | ||
qualcomm QCA6584AU firmware | ||
Qualcomm QCA6584 | ||
All of | ||
Qualcomm QCA6698AQ | ||
Qualcomm QCA6698AQ Firmware | ||
All of | ||
Qualcomm QCA8081 firmware | ||
Qualcomm QCA8081 firmware | ||
All of | ||
Qualcomm QCA8337 Firmware | ||
Qualcomm QCA8337 Firmware | ||
All of | ||
Qualcomm QCC710 | ||
Qualcomm QCC710 | ||
All of | ||
Qualcomm QCM4490 | ||
Qualcomm QCM4490 Firmware | ||
All of | ||
Qualcomm QCM8550 | ||
qualcomm qcm8550 firmware | ||
All of | ||
qualcomm qcn6024 | ||
qualcomm qcn6024 | ||
All of | ||
Qualcomm QCN6224 Firmware | ||
Qualcomm QCN6224 Firmware | ||
All of | ||
Qualcomm QCN6274 Firmware | ||
Qualcomm QCN6274 Firmware | ||
All of | ||
qualcomm qcn9024 | ||
Qualcomm QCN9024 Firmware | ||
All of | ||
Qualcomm QCS4490 | ||
Qualcomm QCS4490 Firmware | ||
All of | ||
Qualcomm QFW7114 Firmware | ||
Qualcomm QFW7114 Firmware | ||
All of | ||
Qualcomm QFW7124 | ||
Qualcomm QFW7124 | ||
All of | ||
Qualcomm SM8550 Firmware | ||
Qualcomm SM8550P | ||
All of | ||
Qualcomm Snapdragon 4 Gen 2 Firmware | ||
Qualcomm Snapdragon 4 Gen 2 | ||
All of | ||
Qualcomm Snapdragon 8 Gen 2 Firmware | ||
Qualcomm Snapdragon 8 Gen 2 | ||
All of | ||
Qualcomm Snapdragon 8 Gen 3 Firmware | ||
Qualcomm Snapdragon 8 Gen 3 Mobile Platform | ||
All of | ||
Qualcomm Snapdragon 8+ Gen 2 Mobile Firmware | ||
Qualcomm Snapdragon 8+ Gen 2 Mobile | ||
All of | ||
Qualcomm Snapdragon Auto 5G-RF Gen 2 Firmware | ||
Qualcomm Snapdragon Auto 5G Modem-RF | ||
All of | ||
Qualcomm Snapdragon X65 5G Modem-RF Firmware | ||
Qualcomm Snapdragon X65 5G Modem-RF System | ||
All of | ||
qualcomm snapdragon x70 modem-rf system firmware | ||
Qualcomm Snapdragon X70 | ||
All of | ||
Qualcomm Snapdragon X75 5G Firmware | ||
Qualcomm Snapdragon X75 5G Modem-RF Firmware | ||
All of | ||
Qualcomm WCD9340 Firmware | ||
Qualcomm WCD9340 Firmware | ||
All of | ||
Qualcomm WCD9370 Firmware | ||
Qualcomm WCD9370 Firmware | ||
All of | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
All of | ||
Qualcomm WCD9385 | ||
Qualcomm WCD9385 Firmware | ||
All of | ||
Qualcomm WCD9390 Firmware | ||
Qualcomm WCD9390 Firmware | ||
All of | ||
Qualcomm WCD9395 | ||
qualcomm wcd9395 firmware | ||
All of | ||
Qualcomm WCN3950 Firmware | ||
Qualcomm WCN3950 Firmware | ||
All of | ||
qualcomm wcn3988 firmware | ||
Qualcomm WCN3988 | ||
All of | ||
Qualcomm WSA8810 | ||
Qualcomm WSA8810 Firmware | ||
All of | ||
qualcomm wsa8815 firmware | ||
qualcomm wsa8815 firmware | ||
All of | ||
Qualcomm WSA8830 | ||
Qualcomm WSA8830 | ||
All of | ||
Qualcomm WSA8832 | ||
qualcomm wsa8832 firmware | ||
All of | ||
Qualcomm WSA8835 | ||
Qualcomm WSA8835 Firmware | ||
All of | ||
Qualcomm WSA8840 Firmware | ||
Qualcomm WSA8840 Firmware | ||
All of | ||
Qualcomm WSA8845H | ||
Qualcomm WSA8845 Firmware | ||
All of | ||
Qualcomm WSA8845H | ||
Qualcomm WSA8845H Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28582 is classified as a high-severity vulnerability due to potential memory corruption.
To address CVE-2023-28582, apply the latest firmware updates from Qualcomm or Google for affected devices.
CVE-2023-28582 affects various Qualcomm firmware and Google Android devices that utilize the affected data modem.
CVE-2023-28582 is a memory corruption vulnerability occurring during the DTLS handshake verification process.
Yes, exploitation of CVE-2023-28582 could potentially allow attackers to execute arbitrary code on affected devices.