CVE-2024-33019
Published Aug 5, 2024Transient DOS while parsing the received TID-to-link mapping action frame.
Vendor/product archive
658 CVEs tagged to qualcomm / ar8035 — 79 Critical, 473 High, 106 Medium, 0 Low, 0 Unrated.
Transient DOS while parsing the received TID-to-link mapping action frame.
Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame.
Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.
Transient DOS while parsing ESP IE from beacon/probe response frame.
Transient DOS while parsing fragments of MBSSID IE from beacon frame.
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
Memory corruption when preparing a shared memory notification for a memparcel in Resource Manager.
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
Memory corruption when allocating and accessing an entry in an SMEM partition.
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
Memory corruption while processing key blob passed by the user.
Transient DOS while loading the TA ELF file.
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
Information disclosure while handling SA query action frame.
INformation disclosure while handling Multi-link IE in beacon frame.
Information Disclosure while parsing beacon frame in STA.
Transient DOS while processing an improperly formatted Fine Time Measurement (FTM) management frame.
Memory corruption in Hypervisor when platform information mentioned is not aligned.
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
Memory corruption when more scan frequency list or channels are sent from the user space.
Memory corruption when IPC callback handle is used after it has been released during register callback by another thread.
Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
Information disclosure while handling T2LM Action Frame in WLAN Host.
Memory corruption while playing audio file having large-sized input buffer.