CVE-2023-43512: Buffer Over-read in Qualcomm ESL
Published Jan 2, 2024
·Updated
Transient DOS while parsing GATT service data when the total amount of memory that is required by the multiple services is greater than the actual size of the services buffer.
Affected Software
2 affected components
All of the following
Qualcomm Qcn7606 Firmware
Qualcomm Qcn7606
Event History
Jan 2, 2024
CVE Published
via MITRE·05:38 AM
Data Sourced
via MITRE·05:38 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-43512?
CVE-2023-43512 has been classified as a Transient Denial of Service (DoS) vulnerability.
2
How do I fix CVE-2023-43512?
To fix CVE-2023-43512, ensure that your firmware is updated to the latest version provided by Qualcomm.
3
What systems are affected by CVE-2023-43512?
CVE-2023-43512 affects Qualcomm QCN7606 firmware specifically.
4
What type of vulnerability is CVE-2023-43512?
CVE-2023-43512 is categorized as a Denial of Service vulnerability caused by inadequate memory handling.
5
Can CVE-2023-43512 be exploited remotely?
Yes, CVE-2023-43512 can potentially be exploited remotely if the vulnerable firmware is exposed.