CVE-2023-33014: Improper Input Validation in Services
Published Jan 2, 2024
·Updated
Information disclosure in Core services while processing a Diag command.
Affected Software
75 affected components
Google Android
All of the following
Qualcomm Ar8035 Firmware
Qualcomm Ar8035
All of the following
Qualcomm Fastconnect 6700
Qualcomm Fastconnect 6700 Firmware
All of the following
Qualcomm Fastconnect 6900 Firmware
Qualcomm Fastconnect 6900
All of the following
Qualcomm Fastconnect 7800 Firmware
Qualcomm Fastconnect 7800
All of the following
Qualcomm Qam8255p Firmware
Qualcomm Qam8255p
All of the following
Qualcomm Qam8650p Firmware
Qualcomm Qam8650p
All of the following
Qualcomm Qam8775p Firmware
Qualcomm Qam8775p
All of the following
Qualcomm Qca6595 Firmware
Qualcomm Qca6595
All of the following
Qualcomm Qca6595au Firmware
Qualcomm Qca6595au
All of the following
Qualcomm Qca6698aq Firmware
Qualcomm Qca6698aq
All of the following
Qualcomm Qca6797aq Firmware
Qualcomm Qca6797aq
All of the following
Qualcomm Qca8081 Firmware
Qualcomm QCA8081
All of the following
Qualcomm Qca8337 Firmware
Qualcomm Qca8337
All of the following
Qualcomm Qcm4490 Firmware
Qualcomm Qcm4490
All of the following
Qualcomm Qcn6024 Firmware
Qualcomm Qcn6024
All of the following
Qualcomm Qcn9024 Firmware
Qualcomm Qcn9024
All of the following
Qualcomm Qcs4490 Firmware
Qualcomm Qcs4490
All of the following
Qualcomm Qcs8550 Firmware
Qualcomm Qcs8550
All of the following
Qualcomm Sa8255p Firmware
Qualcomm Sa8255p
All of the following
Qualcomm Sm4450 Firmware
Qualcomm Sm4450
All of the following
Qualcomm Snapdragon Ar2 Gen 1 Platform Firmware
Qualcomm Snapdragon Ar2 Gen 1 Platform
All of the following
Qualcomm Snapdragon X65 5g Modem-rf System Firmware
Qualcomm Snapdragon X65 5g Modem-rf System
All of the following
Qualcomm Snapdragon X70 Modem-rf System Firmware
Qualcomm Snapdragon X70 Modem-rf System
All of the following
Qualcomm Ssg2115p Firmware
Qualcomm Ssg2115p
All of the following
Qualcomm Ssg2125p Firmware
Qualcomm Ssg2125p
All of the following
Qualcomm Sxr1230p Firmware
Qualcomm Sxr1230p
All of the following
Qualcomm Sxr2230p Firmware
Qualcomm Sxr2230p
All of the following
Qualcomm Wcd9370 Firmware
Qualcomm Wcd9370
All of the following
Qualcomm Wcd9380 Firmware
Qualcomm Wcd9380
All of the following
Qualcomm Wcd9385 Firmware
Qualcomm Wcd9385
All of the following
Qualcomm Wcn3950 Firmware
Qualcomm Wcn3950
All of the following
Qualcomm Wcn3988 Firmware
Qualcomm Wcn3988
All of the following
Qualcomm Wsa8810 Firmware
Qualcomm Wsa8810
All of the following
Qualcomm Wsa8815 Firmware
Qualcomm Wsa8815
All of the following
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
All of the following
Qualcomm Wsa8832 Firmware
Qualcomm Wsa8832
All of the following
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835
Event History
Jan 2, 2024
CVE Published
via MITRE·05:38 AM
Data Sourced
via MITRE·05:38 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-33014?
The severity of CVE-2023-33014 has not been publicly disclosed yet.
2
How do I fix CVE-2023-33014?
To fix CVE-2023-33014, ensure that you apply the latest firmware updates from Qualcomm or the affected device manufacturer.
3
Which devices are affected by CVE-2023-33014?
CVE-2023-33014 affects multiple Qualcomm products, including certain Android devices and various Qualcomm firmware versions.
4
What kind of vulnerability is CVE-2023-33014?
CVE-2023-33014 is an information disclosure vulnerability that occurs during the processing of a Diag command.
5
Is there a workaround for CVE-2023-33014?
No official workaround has been issued for CVE-2023-33014, so applying firmware updates is the recommended action.