8.4
CWE
119 120
Advisory Published
CVE Published
Updated

CVE-2023-33092: Buffer Copy Without Checking Size of Input in Bluetooth HOST

First published: Mon Dec 04 2023(Updated: )

Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size.

Credit: product-security@qualcomm.com

Affected SoftwareAffected VersionHow to fix
Google Android
All of
Google Android
Google Android
All of
Qualcomm Fastconnect 6200 Firmware
Qualcomm Fastconnect 6200
All of
Qualcomm Fastconnect 6700 Firmware
Qualcomm Fastconnect 6700
All of
Qualcomm Fastconnect 6800 Firmware
Qualcomm Fastconnect 6800
All of
Qualcomm Fastconnect 6900 Firmware
Qualcomm Fastconnect 6900
All of
Qualcomm Fastconnect 7800 Firmware
Qualcomm Fastconnect 7800
All of
Google Android
Google Android
All of
Google Android
Qualcomm Qca6320
All of
Google Android
Google Android
All of
Google Android
Qualcomm Qca6420
All of
Qualcomm Qca6430 Firmware
Google Android
All of
Qualcomm Qcm4325 Firmware
Qualcomm Qcm4325
All of
Qualcomm Qcm4490 Firmware
Qualcomm Qcm4490
All of
Qualcomm Multiple Chipsets
Qualcomm Qcm5430
All of
Google Android
Google Android
All of
Qualcomm Qcm8550 Firmware
Qualcomm Qcm8550
All of
Qualcomm Qcs4490 Firmware
Qualcomm Qcs4490
All of
Qualcomm Multiple Chipsets
Qualcomm Qcs5430
All of
Google Android
Google Android
All of
Qualcomm Qcs7230 Firmware
Qualcomm Qcs7230
All of
Qualcomm Qcs8250 Firmware
Qualcomm Qcs8250
All of
Qualcomm Qcs8550 Firmware
Google Android
All of
Qualcomm Qualcomm 215 Mobile Platform Firmware
Qualcomm Qualcomm 215 Mobile Platform
All of
Qualcomm Qualcomm Video Collaboration Vc3 Platform Firmware
Qualcomm Qualcomm Video Collaboration Vc3 Platform
All of
Qualcomm Qualcomm Video Collaboration Vc5 Platform Firmware
Qualcomm Qualcomm Video Collaboration Vc5 Platform
All of
Google Android
Qualcomm Sd730
All of
Qualcomm Sd835 Firmware
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Qualcomm Sg4150p Firmware
Qualcomm Sg4150p
All of
Qualcomm Sm6250 Firmware
Google Android
All of
Google Android
Google Android
All of
Google Android
Qualcomm Sm7315
All of
Google Android
Google Android
All of
Qualcomm Sm8550p Firmware
Qualcomm Sm8550p
All of
Qualcomm Snapdragon 4 Gen 1 Mobile Platform Firmware
Qualcomm Snapdragon 4 Gen 1 Mobile Platform
All of
Qualcomm Snapdragon 4 Gen 2 Mobile Platform Firmware
Qualcomm Snapdragon 4 Gen 2 Mobile Platform
All of
Qualcomm Snapdragon 460 Mobile Platform Firmware
Qualcomm Snapdragon 460 Mobile Platform
All of
Qualcomm Snapdragon 480 5g Mobile Platform Firmware
Qualcomm Snapdragon 480 5g Mobile Platform
All of
Qualcomm Snapdragon 480\+ 5g Mobile Platform Firmware
Qualcomm Snapdragon 480\+ 5g Mobile Platform
All of
Qualcomm Snapdragon 662 Mobile Platform Firmware
Qualcomm Snapdragon 662 Mobile Platform
All of
Qualcomm Snapdragon 680 4g Mobile Platform Firmware
Qualcomm Snapdragon 680 4g Mobile Platform
All of
Qualcomm Snapdragon 685 4g Mobile Platform Firmware
Qualcomm Snapdragon 685 4g Mobile Platform
All of
Qualcomm Snapdragon 690 5g Mobile Platform Firmware
Qualcomm Snapdragon 690 5g Mobile Platform
All of
Qualcomm Snapdragon 695 5g Mobile Platform Firmware
Qualcomm Snapdragon 695 5g Mobile Platform
All of
Qualcomm Snapdragon 720g Mobile Platform Firmware
Qualcomm Snapdragon 720g Mobile Platform
All of
Qualcomm Snapdragon 730 Mobile Platform Firmware
Qualcomm Snapdragon 730 Mobile Platform
All of
Qualcomm Snapdragon 730g Mobile Platform Firmware
Qualcomm Snapdragon 730g Mobile Platform
All of
Qualcomm Snapdragon 732g Mobile Platform Firmware
Qualcomm Snapdragon 732g Mobile Platform
All of
Qualcomm Snapdragon 765 5g Mobile Platform Firmware
Qualcomm Snapdragon 765 5g Mobile Platform
All of
Qualcomm Snapdragon 765g 5g Mobile Platform Firmware
Qualcomm Snapdragon 765g 5g Mobile Platform
All of
Qualcomm Snapdragon 768g 5g Mobile Platform Firmware
Qualcomm Snapdragon 768g 5g Mobile Platform
All of
Qualcomm Snapdragon 778g 5g Mobile Platform Firmware
Qualcomm Snapdragon 778g 5g Mobile Platform
All of
Qualcomm Snapdragon 778g\+ 5g Mobile Platform Firmware
Qualcomm Snapdragon 778g\+ 5g Mobile Platform
All of
Qualcomm Snapdragon 780g 5g Mobile Platform Firmware
Qualcomm Snapdragon 780g 5g Mobile Platform
All of
Qualcomm Snapdragon 782g Mobile Platform Firmware
Qualcomm Snapdragon 782g Mobile Platform
All of
Qualcomm Snapdragon 7c\+ Gen 3 Compute Firmware
Qualcomm Snapdragon 7c\+ Gen 3 Compute
All of
Qualcomm Snapdragon 8 Gen 1 Mobile Platform Firmware
Qualcomm Snapdragon 8 Gen 1 Mobile Platform
All of
Qualcomm Snapdragon 8 Gen 2 Mobile Platform Firmware
Qualcomm Snapdragon 8 Gen 2 Mobile Platform
All of
Qualcomm Snapdragon 8\+ Gen 2 Mobile Platform Firmware
Qualcomm Snapdragon 8\+ Gen 2 Mobile Platform
All of
Qualcomm Snapdragon 835 Mobile Pc Platform Firmware
Qualcomm Snapdragon 835 Mobile Pc Platform
All of
Qualcomm Snapdragon 855 Mobile Platform Firmware
Qualcomm Snapdragon 855 Mobile Platform
All of
Qualcomm Snapdragon 855\+\/860 Mobile Platform Firmware
Qualcomm Snapdragon 855\+\/860 Mobile Platform
All of
Qualcomm Snapdragon 865 5g Mobile Platform Firmware
Qualcomm Snapdragon 865 5g Mobile Platform
All of
Qualcomm Snapdragon 865\+ 5g Mobile Platform Firmware
Qualcomm Snapdragon 865\+ 5g Mobile Platform
All of
Qualcomm Snapdragon 870 5g Mobile Platform Firmware
Qualcomm Snapdragon 870 5g Mobile Platform
All of
Qualcomm Snapdragon 888 5g Mobile Platform Firmware
Qualcomm Snapdragon 888 5g Mobile Platform
All of
Qualcomm Snapdragon 888\+ 5g Mobile Platform Firmware
Qualcomm Snapdragon 888\+ 5g Mobile Platform
All of
Qualcomm Snapdragon X55 5g Modem-rf System Firmware
Qualcomm Snapdragon X55 5g Modem-rf System
All of
Qualcomm Wcd9326 Firmware
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Qualcomm Wcd9341 Firmware
Google Android
All of
Qualcomm Wcd9370 Firmware
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Qualcomm Wcd9390 Firmware
Qualcomm Wcd9390
All of
Qualcomm Wcd9395 Firmware
Qualcomm Wcd9395
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Qualcomm Wcn3990 Firmware
Google Android
All of
Google Android
Qualcomm Wcn6740
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Google Android
Google Android
All of
Qualcomm Wsa8832 Firmware
Qualcomm Wsa8832
All of
Google Android
Google Android
All of
Qualcomm Wsa8840 Firmware
Qualcomm Wsa8840
All of
Qualcomm Wsa8845 Firmware
Qualcomm Wsa8845
All of
Qualcomm Wsa8845h Firmware
Qualcomm Wsa8845h

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2023-33092?

    The severity of CVE-2023-33092 is high, with a severity value of 8.4.

  • Which software is affected by CVE-2023-33092?

    The affected software is Google Android.

  • How can I fix CVE-2023-33092?

    To fix CVE-2023-33092, users should update their devices to the latest version of Google Android as recommended by the vendor.

  • What is the cause of CVE-2023-33092?

    CVE-2023-33092 is caused by a memory corruption issue while processing pin reply in Bluetooth when the pin code received from the APP layer is greater than the expected size.

  • Where can I find more information about CVE-2023-33092?

    You can find more information about CVE-2023-33092 on the following references: [link1](https://git.codelinaro.org/clo/la/platform/vendor/qcom-opensource/system/bt/-/commit/4be5d789d0e6199709804f4ec432a582237bce98), [link2](https://source.android.com/docs/security/bulletin/2023-12-01), [link3](https://www.qualcomm.com/company/product-security/bulletins/december-2023-bulletin).

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203