CVE-2024-33026

HIGH

Qualcomm Ar8035 Firmware - Buffer Over-read

Title source: rule
STIX 2.1

Description

Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.

Scores

CVSS v3 7.5
EPSS 0.0040
EPSS Percentile 60.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-125 CWE-126
Status published
Products (50)
qualcomm/ar8035_firmware
qualcomm/csr8811_firmware
qualcomm/fastconnect_6700_firmware
qualcomm/fastconnect_6900_firmware
qualcomm/fastconnect_7800_firmware
qualcomm/flight_rb5_5g_platform_firmware
qualcomm/immersive_home_214_platform_firmware
qualcomm/immersive_home_216_platform_firmware
qualcomm/immersive_home_316_platform_firmware
qualcomm/immersive_home_318_platform_firmware
... and 40 more
Published Aug 05, 2024
Tracked Since Feb 18, 2026