CVE-2023-33071
05.12.2023, 03:15
Memory corruption in Automotive OS whenever untrusted apps try to access HAb for graphics functionalities.Enginsight
Vendor | Product | Version |
---|---|---|
qualcomm | qca6574_firmware | - |
qualcomm | qca6574a_firmware | - |
qualcomm | qca6574au_firmware | - |
qualcomm | qca6595au_firmware | - |
qualcomm | sa6145p_firmware | - |
qualcomm | sa6150p_firmware | - |
qualcomm | sa6155_firmware | - |
qualcomm | sa6155p_firmware | - |
qualcomm | sa8145p_firmware | - |
qualcomm | sa8150p_firmware | - |
qualcomm | sa8155_firmware | - |
qualcomm | sa8155p_firmware | - |
qualcomm | sa8195p_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-284 - Improper Access ControlThe software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
- CWE-863 - Incorrect AuthorizationThe software performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check. This allows attackers to bypass intended access restrictions.