CVE-2023-43516: Use of out-of-range pointer offset in Video
Published Feb 5, 2024
·Updated
Memory corruption when malformed message payload is received from firmware.
Affected Software
17 affected components
Google Android
All of the following
QUALCOMM Fastconnect 6900 Firmware
QUALCOMM Fastconnect 6900
All of the following
QUALCOMM Fastconnect 7800 Firmware
QUALCOMM Fastconnect 7800
All of the following
QUALCOMM Qcm8550 Firmware
QUALCOMM Qcm8550
All of the following
QUALCOMM Qcs8550 Firmware
QUALCOMM Qcs8550
All of the following
QUALCOMM Snapdragon 8 Gen 1 Mobile Platform Firmware
QUALCOMM Snapdragon 8 Gen 1 Mobile Platform
All of the following
Qualcomm Wcd9380 Firmware
Qualcomm Wcd9380
All of the following
Qualcomm Wsa8830 Firmware
Qualcomm Wsa8830
All of the following
Qualcomm Wsa8835 Firmware
Qualcomm Wsa8835
Event History
Feb 5, 2024
CVE Published
via Android·12:00 AM
Data Sourced
via Android·12:00 AM
SeverityAffected Software
Feb 6, 2024
CVE Published
via MITRE·05:47 AM
Data Sourced
via MITRE·05:47 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-43516?
CVE-2023-43516 is classified as a memory corruption vulnerability affecting Qualcomm firmware.
2
How does CVE-2023-43516 impact devices?
CVE-2023-43516 allows for potential exploitation when a malformed message payload is received from the firmware.
3
Which affected firmware versions are vulnerable to CVE-2023-43516?
CVE-2023-43516 affects Qualcomm Fastconnect 6900, Fastconnect 7800, Qcm8550, Qcs8550, Snapdragon 8 Gen 1 Mobile Platform, WCD9380, WSA8830, and WSA8835 firmware.
4
How do I fix CVE-2023-43516?
Fixing CVE-2023-43516 involves updating to the latest firmware version provided by Qualcomm.
5
Are there any known exploits for CVE-2023-43516?
As of now, there are no publicly disclosed exploits specifically known for CVE-2023-43516.