CVE-2023-43528

MEDIUM

ADSP <expected size - Info Disclosure

Title source: llm
STIX 2.1

Description

Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.

Scores

CVSS v3 6.1
EPSS 0.0006
EPSS Percentile 17.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-125 CWE-126
Status published
Products (50)
qualcomm/ar8035_firmware
qualcomm/c-v2x_9150_firmware
qualcomm/csrb31024_firmware
qualcomm/fastconnect_6800_firmware
qualcomm/fastconnect_6900_firmware
qualcomm/fastconnect_7800_firmware
qualcomm/msm8996au_firmware
qualcomm/qam8255p_firmware
qualcomm/qam8295p_firmware
qualcomm/qam8650p_firmware
... and 40 more
Published May 06, 2024
Tracked Since Feb 18, 2026