Qca6428

Vendor:

First CVE: Jan 21, 2021 · Active for 5 years

111
Total CVEs
More Total CVEs than 99% of tracked products
18.5
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 62% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Qca6428 over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jan 21, 2021
5 years ago
Most Recent CVE
Jan 7, 2026
200 days ago

CVE Severity & Scoring

Qca6428111 CVEs
All CVEs352,719 CVEs
MediumHighCritical
Attack Vector
Local50 (45.0%)
Network57 (51.4%)
Unknown0 (0.0%)
Physical1 (0.9%)
Adjacent Network3 (2.7%)
Attack Complexity
Low110 (99.1%)
High1 (0.9%)
Unknown0 (0.0%)
User Interaction
None111 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low45 (40.5%)
High5 (4.5%)
None61 (55.0%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (111 CVEs).

111 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect
Jan 3, 20229.832NONO
Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer
Oct 19, 20229.830NONO
Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron
Oct 20, 20219.130NONO
A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer
Sep 17, 20219.830NONO
Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap
Sep 8, 20219.830NONO
Memory corruption while redirecting log file to any file location with any file name.
Apr 1, 20249.829NONO
Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect
Sep 8, 20217.529NONO
Possible buffer overflow due to improper parsing of headers while playing the FLAC audio clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer I
Jun 14, 20229.828NONO
Possible out of bound read due to improper validation of IE length during SSID IE parse when channel is DFS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdra
Apr 1, 20229.128NONO
An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdr
Jan 21, 20219.128NONO

Exploit Exposure

Signals from CVEs in this product scope (111 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (111 CVEs).

Media Mentions

Signals from CVEs in this product scope (111 CVEs).

Top CNAs Publishing CVEs For Qca6428

Top CWEs

Versions

No cataloged versions.