CVE-2023-43520

HIGH

Qualcomm AR8035 and FastConnect Firmware - Stack-based Buffer Overflow in Beacon TID to Link Mapping IE Parser

Title source: llm
STIX 2.1

Description

Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.

References (1)

Core 1

Scores

CVSS v3 8.6
EPSS 0.0027
EPSS Percentile 50.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-121 CWE-787
Status published
Products (50)
qualcomm/ar8035_firmware
qualcomm/fastconnect_6900_firmware
qualcomm/fastconnect_7800_firmware
qualcomm/flight_rb5_5g_platform_firmware
qualcomm/qam8255p_firmware
qualcomm/qam8650p_firmware
qualcomm/qam8775p_firmware
qualcomm/qamsrv1h_firmware
qualcomm/qamsrv1m_firmware
qualcomm/qca6391_firmware
... and 40 more
Published Feb 06, 2024
Tracked Since Feb 18, 2026