CVE-2023-28575

The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
Type Confusion
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
qualcommCNA
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 10%
VendorProductVersion
qualcommaqt1000_firmware
-
qualcommc-v2x_9150_firmware
-
qualcommfastconnect_6200_firmware
-
qualcommfastconnect_6800_firmware
-
qualcommfastconnect_6900_firmware
-
qualcommfastconnect_7800_firmware
-
qualcommqam8295p_firmware
-
qualcommqca6391_firmware
-
qualcommqca6420_firmware
-
qualcommqca6426_firmware
-
qualcommqca6430_firmware
-
qualcommqca6436_firmware
-
qualcommqca6574au_firmware
-
qualcommqca6696_firmware
-
qualcommqca8337_firmware
-
qualcommqcn9074_firmware
-
qualcommqcs410_firmware
-
qualcommqcs610_firmware
-
qualcommqcs8155_firmware
-
qualcomm205_firmware
-
qualcomm215_firmware
-
qualcommsa6145p_firmware
-
qualcommsa6150p_firmware
-
qualcommsa6155p_firmware
-
qualcommsa8145p_firmware
-
qualcommsa8150p_firmware
-
qualcommsa8155p_firmware
-
qualcommsa8195p_firmware
-
qualcommsa8295p_firmware
-
qualcommsd855_firmware
-
qualcommsd865_5g_firmware
-
qualcommsdx55_firmware
-
qualcommsd210_firmware
-
qualcommsd212_firmware
-
qualcommsnapdragon_8_gen_1_firmware
-
qualcommsnapdragon_855_firmware
-
qualcommsnapdragon_855\+\/860_firmware
-
qualcommsnapdragon_865_5g_firmware
-
qualcommsnapdragon_865\+_5g_firmware
-
qualcommsnapdragon_870_5g_firmware
-
qualcommsnapdragon_w5\+_gen_1_firmware
-
qualcommsnapdragon_wear_4100\+_firmware
-
qualcommsnapdragon_x55_5g_firmware
-
qualcommsnapdragon_xr2_5g_firmware
-
qualcommsw5100_firmware
-
qualcommsw5100p_firmware
-
qualcommsxr2130_firmware
-
qualcommwcd9341_firmware
-
qualcommwcd9370_firmware
-
qualcommwcd9380_firmware
-
qualcommwcn3610_firmware
-
qualcommwcn3660b_firmware
-
qualcommwcn3680b_firmware
-
qualcommwcn3950_firmware
-
qualcommwcn3980_firmware
-
qualcommwcn3988_firmware
-
qualcommwsa8810_firmware
-
qualcommwsa8815_firmware
-
qualcommwsa8830_firmware
-
qualcommwsa8835_firmware
-
𝑥
= Vulnerable software versions