CVE-2024-33050: Buffer Over-read in WLAN Host Communication
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2024-33050?
CVE-2024-33050 has been classified with a medium severity level due to its potential for causing a transient Denial of Service.
How do I fix CVE-2024-33050?
To address CVE-2024-33050, ensure that the affected devices are updated with the latest firmware that includes the necessary patch.
What devices are affected by CVE-2024-33050?
CVE-2024-33050 specifically affects Qualcomm firmware on various Android devices, including but not limited to the ar8035 and ar9380 families.
What is the nature of the vulnerability in CVE-2024-33050?
CVE-2024-33050 involves improper length checks during the parsing of MBSSID in beacon or probe frames, potentially leading to a Denial of Service.
Will my device stop functioning if it is vulnerable to CVE-2024-33050?
While devices may not completely stop functioning, they could experience disruptions or crashes when interacting with affected wireless frames.