Vulnerability Description
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qualcomm | 315 5G Iot Modem Firmware | - |
| Qualcomm | 315 5G Iot Modem | - |
| Qualcomm | Apq8017 Firmware | - |
| Qualcomm | Apq8017 | - |
| Qualcomm | Aqt1000 Firmware | - |
| Qualcomm | Aqt1000 | - |
| Qualcomm | Ar8031 Firmware | - |
| Qualcomm | Ar8031 | - |
| Qualcomm | Ar8035 Firmware | - |
| Qualcomm | Ar8035 | - |
| Qualcomm | C-V2X 9150 Firmware | - |
| Qualcomm | C-V2X 9150 | - |
| Qualcomm | Csra6620 Firmware | - |
| Qualcomm | Csra6620 | - |
| Qualcomm | Csra6640 Firmware | - |
| Qualcomm | Csra6640 | - |
| Qualcomm | Csrb31024 Firmware | - |
| Qualcomm | Csrb31024 | - |
| Qualcomm | Fastconnect 6200 Firmware | - |
| Qualcomm | Fastconnect 6200 | - |
Related Weaknesses (CWE)
References
- https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletVendor Advisory
- https://www.qualcomm.com/company/product-security/bulletins/february-2024-bulletVendor Advisory
FAQ
What is CVE-2023-43513?
CVE-2023-43513 is a vulnerability with a CVSS score of 7.8 (HIGH). Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
How severe is CVE-2023-43513?
CVE-2023-43513 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-43513?
Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm 315 5G Iot Modem Firmware, Qualcomm 315 5G Iot Modem, Qualcomm Apq8017 Firmware, Qualcomm Apq8017, Qualcomm Aqt1000 Firmware.