Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message.
Conclusion & alert: CVE-2023-24854 is rated Low Risk (36.8/100): CVSS High severity, with low exploitation likelihood (EPSS 0.05%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-11-21 | 0.04% | 0.05% | +0.01% |
| 2 | 2025-11-18 | 0.05% | 0.04% | -0.01% |
| 3 | 2025-04-15 | — | 0.05% | — |
Full EPSS history (7 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.8 | 3.1 | HIGH |
|
1.8 | 5.9 | [email protected] |
| 7.8 | 3.1 | HIGH |
|
1.8 | 5.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| qualcomm | ar8035_firmware | — | cpe:2.3:o:qualcomm:ar8035_firmware:-:*:*:*:*:*:*:* |
| qualcomm | csra6620_firmware | — | cpe:2.3:o:qualcomm:csra6620_firmware:-:*:*:*:*:*:*:* |
| qualcomm | csra6640_firmware | — | cpe:2.3:o:qualcomm:csra6640_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fastconnect_6200_firmware | — | cpe:2.3:o:qualcomm:fastconnect_6200_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fastconnect_6700_firmware | — | cpe:2.3:o:qualcomm:fastconnect_6700_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fastconnect_6800_firmware | — | cpe:2.3:o:qualcomm:fastconnect_6800_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fastconnect_6900_firmware | — | cpe:2.3:o:qualcomm:fastconnect_6900_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fastconnect_7800_firmware | — | cpe:2.3:o:qualcomm:fastconnect_7800_firmware:-:*:*:*:*:*:*:* |
| qualcomm | flight_rb5_5g_firmware | — | cpe:2.3:o:qualcomm:flight_rb5_5g_firmware:-:*:*:*:*:*:*:* |
| qualcomm | immersive_home_214_firmware | — | cpe:2.3:o:qualcomm:immersive_home_214_firmware:-:*:*:*:*:*:*:* |
| qualcomm | immersive_home_216_firmware | — | cpe:2.3:o:qualcomm:immersive_home_216_firmware:-:*:*:*:*:*:*:* |
| qualcomm | immersive_home_316_firmware | — | cpe:2.3:o:qualcomm:immersive_home_316_firmware:-:*:*:*:*:*:*:* |
| qualcomm | immersive_home_318_firmware | — | cpe:2.3:o:qualcomm:immersive_home_318_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq5010_firmware | — | cpe:2.3:o:qualcomm:ipq5010_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq6018_firmware | — | cpe:2.3:o:qualcomm:ipq6018_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq8074a_firmware | — | cpe:2.3:o:qualcomm:ipq8074a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq8174_firmware | — | cpe:2.3:o:qualcomm:ipq8174_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq9574_firmware | — | cpe:2.3:o:qualcomm:ipq9574_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qam8255p_firmware | — | cpe:2.3:o:qualcomm:qam8255p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qam8295p_firmware | — | cpe:2.3:o:qualcomm:qam8295p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qam8650p_firmware | — | cpe:2.3:o:qualcomm:qam8650p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qam8775p_firmware | — | cpe:2.3:o:qualcomm:qam8775p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca4024_firmware | — | cpe:2.3:o:qualcomm:qca4024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6174a_firmware | — | cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6310_firmware | — | cpe:2.3:o:qualcomm:qca6310_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6320_firmware | — | cpe:2.3:o:qualcomm:qca6320_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6391_firmware | — | cpe:2.3:o:qualcomm:qca6391_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6554a_firmware | — | cpe:2.3:o:qualcomm:qca6554a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6564au_firmware | — | cpe:2.3:o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574_firmware | — | cpe:2.3:o:qualcomm:qca6574_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574a_firmware | — | cpe:2.3:o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574au_firmware | — | cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6584au_firmware | — | cpe:2.3:o:qualcomm:qca6584au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6595_firmware | — | cpe:2.3:o:qualcomm:qca6595_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6595au_firmware | — | cpe:2.3:o:qualcomm:qca6595au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6696_firmware | — | cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6698aq_firmware | — | cpe:2.3:o:qualcomm:qca6698aq_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6797aq_firmware | — | cpe:2.3:o:qualcomm:qca6797aq_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8072_firmware | — | cpe:2.3:o:qualcomm:qca8072_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8075_firmware | — | cpe:2.3:o:qualcomm:qca8075_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8081_firmware | — | cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8337_firmware | — | cpe:2.3:o:qualcomm:qca8337_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca9377_firmware | — | cpe:2.3:o:qualcomm:qca9377_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm2290_firmware | — | cpe:2.3:o:qualcomm:qcm2290_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm4290_firmware | — | cpe:2.3:o:qualcomm:qcm4290_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm4325_firmware | — | cpe:2.3:o:qualcomm:qcm4325_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm4490_firmware | — | cpe:2.3:o:qualcomm:qcm4490_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm6490_firmware | — | cpe:2.3:o:qualcomm:qcm6490_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5022_firmware | — | cpe:2.3:o:qualcomm:qcn5022_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5024_firmware | — | cpe:2.3:o:qualcomm:qcn5024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5052_firmware | — | cpe:2.3:o:qualcomm:qcn5052_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5054_firmware | — | cpe:2.3:o:qualcomm:qcn5054_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5122_firmware | — | cpe:2.3:o:qualcomm:qcn5122_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5152_firmware | — | cpe:2.3:o:qualcomm:qcn5152_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn6024_firmware | — | cpe:2.3:o:qualcomm:qcn6024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9000_firmware | — | cpe:2.3:o:qualcomm:qcn9000_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9001_firmware | — | cpe:2.3:o:qualcomm:qcn9001_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9002_firmware | — | cpe:2.3:o:qualcomm:qcn9002_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9003_firmware | — | cpe:2.3:o:qualcomm:qcn9003_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9011_firmware | — | cpe:2.3:o:qualcomm:qcn9011_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9012_firmware | — | cpe:2.3:o:qualcomm:qcn9012_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9024_firmware | — | cpe:2.3:o:qualcomm:qcn9024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9274_firmware | — | cpe:2.3:o:qualcomm:qcn9274_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs2290_firmware | — | cpe:2.3:o:qualcomm:qcs2290_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs410_firmware | — | cpe:2.3:o:qualcomm:qcs410_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs4290_firmware | — | cpe:2.3:o:qualcomm:qcs4290_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs4490_firmware | — | cpe:2.3:o:qualcomm:qcs4490_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs610_firmware | — | cpe:2.3:o:qualcomm:qcs610_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs6490_firmware | — | cpe:2.3:o:qualcomm:qcs6490_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qrb5165m_firmware | — | cpe:2.3:o:qualcomm:qrb5165m_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qrb5165n_firmware | — | cpe:2.3:o:qualcomm:qrb5165n_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qsm8350_firmware | — | cpe:2.3:o:qualcomm:qsm8350_firmware:-:*:*:*:*:*:*:* |
| qualcomm | 215_firmware | — | cpe:2.3:o:qualcomm:215_firmware:-:*:*:*:*:*:*:* |
| qualcomm | video_collaboration_vc1_platform_firmware | — | cpe:2.3:o:qualcomm:video_collaboration_vc1_platform_firmware:-:*:*:*:*:*:*:* |
| qualcomm | video_collaboration_vc3_platform_firmware | — | cpe:2.3:o:qualcomm:video_collaboration_vc3_platform_firmware:-:*:*:*:*:*:*:* |
| qualcomm | robotics_rb5_firmware | — | cpe:2.3:o:qualcomm:robotics_rb5_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa4150p_firmware | — | cpe:2.3:o:qualcomm:sa4150p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa4155p_firmware | — | cpe:2.3:o:qualcomm:sa4155p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa6145p_firmware | — | cpe:2.3:o:qualcomm:sa6145p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa6150p_firmware | — | cpe:2.3:o:qualcomm:sa6150p_firmware:-:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://www.qualcomm.com/company/product-security/bulletins/july-2023-bulletin | Patch Vendor Advisory |