Description
Information disclosure in Automotive multimedia due to buffer over-read.
References (1)
Core 1
Core References
Patch, Vendor Advisory
https://www.qualcomm.com/company/product-security/bulletins/september-2023-bulletin
Scores
CVSS v3
5.1
EPSS
0.0002
EPSS Percentile
5.0%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-125
CWE-126
Status
published
Products (45)
qualcomm/aqt1000_firmware
qualcomm/qam8295p_firmware
qualcomm/qca6390_firmware
qualcomm/qca6391_firmware
qualcomm/qca6420_firmware
qualcomm/qca6426_firmware
qualcomm/qca6430_firmware
qualcomm/qca6436_firmware
qualcomm/qca6574au_firmware
qualcomm/qca6595au_firmware
... and 35 more
Published
Sep 05, 2023
Tracked Since
Feb 18, 2026