Qca9531 Firmware
Vendor:
First CVE: Oct 29, 2018 · Active for 7 years
53
Total CVEs
More Total CVEs than 98% of tracked products
7.6
Avg CVEs / Year
Higher CVE frequency than 94% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 65% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Qca9531 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Oct 29, 2018
7 years ago
Most Recent CVE
Apr 1, 2024
848 days ago
CVE Severity & Scoring
Qca9531 Firmware53 CVEs
19%
66%
15%
All CVEs353,240 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local29 (54.7%)
Network21 (39.6%)
Unknown0 (0.0%)
Physical1 (1.9%)
Adjacent Network2 (3.8%)
Attack Complexity
Low52 (98.1%)
High1 (1.9%)
Unknown0 (0.0%)
User Interaction
None53 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low24 (45.3%)
High5 (9.4%)
None24 (45.3%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (53 CVEs).
53 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-11117CRITICAL u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapd | Sep 8, 2020 | 9.8 | 33 | NO | NO |
CVE-2020-11172CRITICAL u'fscanf reads a string from a file and stores its contents on a statically allocated stack memory which leads to stack overflow' in Snapdragon Wired Infrastructure and Networking | Nov 2, 2020 | 9.8 | 31 | NO | NO |
CVE-2021-1980CRITICAL Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron | Oct 20, 2021 | 9.1 | 30 | NO | NO |
CVE-2021-1976CRITICAL A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer | Sep 17, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-1972CRITICAL Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap | Sep 8, 2021 | 9.8 | 30 | NO | NO |
CVE-2024-21473CRITICAL Memory corruption while redirecting log file to any file location with any file name. | Apr 1, 2024 | 9.8 | 29 | NO | NO |
CVE-2023-33083CRITICAL Memory corruption in WLAN Host while processing RRM beacon on the AP. | Dec 5, 2023 | 9.8 | 29 | NO | NO |
CVE-2020-11301HIGH Improper authentication of un-encrypted plaintext Wi-Fi frames in an encrypted network can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect | Sep 8, 2021 | 7.5 | 29 | NO | NO |
CVE-2021-1915HIGH Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Elec | May 7, 2021 | 7.8 | 26 | NO | NO |
CVE-2017-18279HIGH Lack of check of buffer length before copying can lead to buffer overflow in camera module in Small Cell SoC, Snapdragon Mobile, Snapdragon Wear in FSM9055, FSM9955, IPQ4019, IPQ80 | May 6, 2019 | 7.8 | 26 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (53 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (53 CVEs).
Media Mentions
Signals from CVEs in this product scope (53 CVEs).
Top CNAs Publishing CVEs For Qca9531 Firmware
Top CWEs
Versions
No cataloged versions.