CVE-2023-21639

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
04/07/2023
Last modified:
12/04/2024

Description

Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:qualcomm:aqt1000:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:aqt1000_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:fastconnect_6200_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:fastconnect_6200:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6420_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6420:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qca6430_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qca6430:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa4150p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa4150p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa4155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa4155p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:sa6155p:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:*