CVE-2023-28586 – Improper Restriction of Operation within the Bounds of a Memory Buffer in TZ Secure OS
https://notcve.org/view.php?id=CVE-2023-28586
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE. Divulgación de información cuando se accede a las direcciones de símbolos de metadatos de la aplicación confiable mientras se carga un ELF en TEE. • https://www.qualcomm.com/company/product-security/bulletins/december-2023-bulletin • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2023-28585 – Integer Overflow to Buffer Overflow in TZ Secure OS
https://notcve.org/view.php?id=CVE-2023-28585
Memory corruption while loading an ELF segment in TEE Kernel. Corrupción de la memoria al cargar un segmento ELF en TEE Kernel. • https://www.qualcomm.com/company/product-security/bulletins/december-2023-bulletin • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer CWE-680: Integer Overflow to Buffer Overflow •
CVE-2023-33061 – Buffer Over-read in WLAN Firmware
https://notcve.org/view.php?id=CVE-2023-33061
Transient DOS in WLAN Firmware while parsing WLAN beacon or probe-response frame. DOS transitorio en WLAN Firmware mientras se analiza la baliza WLAN o el frame de respuesta de sonda. • https://www.qualcomm.com/company/product-security/bulletins/november-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •
CVE-2023-33056 – NULL Pointer dereference in WLAN Firmware
https://notcve.org/view.php?id=CVE-2023-33056
Transient DOS in WLAN Firmware when firmware receives beacon including T2LM IE. DOS transitorio en WLAN Firmware cuando el firmware recibe una baliza que incluye T2LM IE. • https://www.qualcomm.com/company/product-security/bulletins/november-2023-bulletin • CWE-476: NULL Pointer Dereference •
CVE-2023-33048 – Buffer over-read in WLAN Firmware
https://notcve.org/view.php?id=CVE-2023-33048
Transient DOS in WLAN Firmware while parsing t2lm buffers. DOS transitorio en WLAN Firmware mientras se analizan los buffers t2lm. • https://www.qualcomm.com/company/product-security/bulletins/november-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •