First published: Tue Feb 06 2024(Updated: )
Memory corruption when negative display IDs are sent as input while processing DISPLAYESCAPE event trigger.
Credit: product-security@qualcomm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Qualcomm FastConnect 6700 Firmware | ||
Qualcomm Fastconnect 6700 | ||
All of | ||
Qualcomm FastConnect 6900 Firmware | ||
Qualcomm Fastconnect 6900 Firmware | ||
All of | ||
Qualcomm FastConnect 7800 Firmware | ||
Qualcomm Fastconnect 7800 Firmware | ||
All of | ||
Qualcomm SC8380XP Firmware | ||
Qualcomm SC8380XP Firmware | ||
All of | ||
Qualcomm Snapdragon 7c+ Gen 3 Compute Firmware | ||
Qualcomm Snapdragon 7c+ Gen 3 Compute | ||
All of | ||
Qualcomm Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB) Firmware | ||
Qualcomm Snapdragon 8cx Gen 3 Compute Platform (SC8280XP-AB, BB) Firmware | ||
All of | ||
Qualcomm WCD9380 | ||
Qualcomm WCD9380 Firmware | ||
All of | ||
Qualcomm WCD9385 | ||
Qualcomm WCD9385 Firmware | ||
All of | ||
Qualcomm WSA8830 | ||
Qualcomm WSA8830 | ||
All of | ||
Qualcomm WSA8835 | ||
Qualcomm WSA8835 Firmware | ||
All of | ||
Qualcomm WSA8840 Firmware | ||
Qualcomm WSA8840 Firmware | ||
All of | ||
Qualcomm WSA8845H | ||
Qualcomm WSA8845 Firmware | ||
All of | ||
Qualcomm WSA8845 Firmware | ||
Qualcomm WSA8845H Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43535 is classified as a high-severity vulnerability due to memory corruption risks.
To mitigate CVE-2023-43535, update the affected Qualcomm firmware to the latest version provided by Qualcomm.
CVE-2023-43535 affects several versions of Qualcomm's Fastconnect and Snapdragon firmware products.
CVE-2023-43535 is caused by memory corruption when negative display IDs are processed during the DISPLAYESCAPE event.
As of now, there is no public information indicating that CVE-2023-43535 is actively being exploited.