CVE-2023-21631

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
04/07/2023
Last modified:
11/08/2025

Description

Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:qualcomm:315_5g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:315_5g:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:9205_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:9205:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:apq8017_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8017:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:apq8037_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:apq8037:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:aqt1000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:aqt1000:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:ar8035:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:c-v2x_9150_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:c-v2x_9150:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:csra6620_firmware:-:*:*:*:*:*:*:*