Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
Conclusion & alert: CVE-2023-33032 is rated Moderate Risk (43.8/100): CVSS Critical severity, with low exploitation likelihood (EPSS 0.06%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2025-11-21 | 0.04% | 0.06% | +0.02% |
| 2 | 2025-11-18 | 0.06% | 0.04% | -0.02% |
| 3 | 2025-04-15 | — | 0.06% | — |
Full EPSS history (7 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.3 | 3.1 | CRITICAL |
|
2.5 | 6.0 | [email protected] |
| 7.8 | 3.1 | HIGH |
|
1.8 | 5.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| qualcomm | 9205_lte_modem_firmware | — | cpe:2.3:o:qualcomm:9205_lte_modem_firmware:-:*:*:*:*:*:*:* |
| qualcomm | aqt1000_firmware | — | cpe:2.3:o:qualcomm:aqt1000_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ar8031_firmware | — | cpe:2.3:o:qualcomm:ar8031_firmware:-:*:*:*:*:*:*:* |
| qualcomm | c-v2x_9150_firmware | — | cpe:2.3:o:qualcomm:c-v2x_9150_firmware:-:*:*:*:*:*:*:* |
| qualcomm | csr8811_firmware | — | cpe:2.3:o:qualcomm:csr8811_firmware:-:*:*:*:*:*:*:* |
| qualcomm | csra6620_firmware | — | cpe:2.3:o:qualcomm:csra6620_firmware:-:*:*:*:*:*:*:* |
| qualcomm | csra6640_firmware | — | cpe:2.3:o:qualcomm:csra6640_firmware:-:*:*:*:*:*:*:* |
| qualcomm | csrb31024_firmware | — | cpe:2.3:o:qualcomm:csrb31024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fastconnect_6200_firmware | — | cpe:2.3:o:qualcomm:fastconnect_6200_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fastconnect_6800_firmware | — | cpe:2.3:o:qualcomm:fastconnect_6800_firmware:-:*:*:*:*:*:*:* |
| qualcomm | fsm10056_firmware | — | cpe:2.3:o:qualcomm:fsm10056_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq6000_firmware | — | cpe:2.3:o:qualcomm:ipq6000_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq6005_firmware | — | cpe:2.3:o:qualcomm:ipq6005_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq6010_firmware | — | cpe:2.3:o:qualcomm:ipq6010_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq6018_firmware | — | cpe:2.3:o:qualcomm:ipq6018_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq6028_firmware | — | cpe:2.3:o:qualcomm:ipq6028_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq9008_firmware | — | cpe:2.3:o:qualcomm:ipq9008_firmware:-:*:*:*:*:*:*:* |
| qualcomm | ipq9574_firmware | — | cpe:2.3:o:qualcomm:ipq9574_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca4004_firmware | — | cpe:2.3:o:qualcomm:qca4004_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca4024_firmware | — | cpe:2.3:o:qualcomm:qca4024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6174a_firmware | — | cpe:2.3:o:qualcomm:qca6174a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6391_firmware | — | cpe:2.3:o:qualcomm:qca6391_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6420_firmware | — | cpe:2.3:o:qualcomm:qca6420_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6430_firmware | — | cpe:2.3:o:qualcomm:qca6430_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6564_firmware | — | cpe:2.3:o:qualcomm:qca6564_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6564a_firmware | — | cpe:2.3:o:qualcomm:qca6564a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6564au_firmware | — | cpe:2.3:o:qualcomm:qca6564au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574_firmware | — | cpe:2.3:o:qualcomm:qca6574_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574a_firmware | — | cpe:2.3:o:qualcomm:qca6574a_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6574au_firmware | — | cpe:2.3:o:qualcomm:qca6574au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6595_firmware | — | cpe:2.3:o:qualcomm:qca6595_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6595au_firmware | — | cpe:2.3:o:qualcomm:qca6595au_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca6696_firmware | — | cpe:2.3:o:qualcomm:qca6696_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8072_firmware | — | cpe:2.3:o:qualcomm:qca8072_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8075_firmware | — | cpe:2.3:o:qualcomm:qca8075_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8081_firmware | — | cpe:2.3:o:qualcomm:qca8081_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8082_firmware | — | cpe:2.3:o:qualcomm:qca8082_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8084_firmware | — | cpe:2.3:o:qualcomm:qca8084_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8085_firmware | — | cpe:2.3:o:qualcomm:qca8085_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca8386_firmware | — | cpe:2.3:o:qualcomm:qca8386_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qca9377_firmware | — | cpe:2.3:o:qualcomm:qca9377_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcm6125_firmware | — | cpe:2.3:o:qualcomm:qcm6125_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5021_firmware | — | cpe:2.3:o:qualcomm:qcn5021_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5022_firmware | — | cpe:2.3:o:qualcomm:qcn5022_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5052_firmware | — | cpe:2.3:o:qualcomm:qcn5052_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5121_firmware | — | cpe:2.3:o:qualcomm:qcn5121_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5122_firmware | — | cpe:2.3:o:qualcomm:qcn5122_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn5152_firmware | — | cpe:2.3:o:qualcomm:qcn5152_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn6023_firmware | — | cpe:2.3:o:qualcomm:qcn6023_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn6024_firmware | — | cpe:2.3:o:qualcomm:qcn6024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9000_firmware | — | cpe:2.3:o:qualcomm:qcn9000_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9022_firmware | — | cpe:2.3:o:qualcomm:qcn9022_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9024_firmware | — | cpe:2.3:o:qualcomm:qcn9024_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9070_firmware | — | cpe:2.3:o:qualcomm:qcn9070_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9072_firmware | — | cpe:2.3:o:qualcomm:qcn9072_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9074_firmware | — | cpe:2.3:o:qualcomm:qcn9074_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcn9274_firmware | — | cpe:2.3:o:qualcomm:qcn9274_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs410_firmware | — | cpe:2.3:o:qualcomm:qcs410_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs610_firmware | — | cpe:2.3:o:qualcomm:qcs610_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs6125_firmware | — | cpe:2.3:o:qualcomm:qcs6125_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qcs8155_firmware | — | cpe:2.3:o:qualcomm:qcs8155_firmware:-:*:*:*:*:*:*:* |
| qualcomm | qts110_firmware | — | cpe:2.3:o:qualcomm:qts110_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa4150p_firmware | — | cpe:2.3:o:qualcomm:sa4150p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa4155p_firmware | — | cpe:2.3:o:qualcomm:sa4155p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa6145p_firmware | — | cpe:2.3:o:qualcomm:sa6145p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa6150p_firmware | — | cpe:2.3:o:qualcomm:sa6150p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa6155_firmware | — | cpe:2.3:o:qualcomm:sa6155_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa6155p_firmware | — | cpe:2.3:o:qualcomm:sa6155p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa8145p_firmware | — | cpe:2.3:o:qualcomm:sa8145p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa8150p_firmware | — | cpe:2.3:o:qualcomm:sa8150p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa8155_firmware | — | cpe:2.3:o:qualcomm:sa8155_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa8155p_firmware | — | cpe:2.3:o:qualcomm:sa8155p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sa8195p_firmware | — | cpe:2.3:o:qualcomm:sa8195p_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sc8180x\+sdx55_firmware | — | cpe:2.3:o:qualcomm:sc8180x\+sdx55_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sd_675_firmware | — | cpe:2.3:o:qualcomm:sd_675_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sd675_firmware | — | cpe:2.3:o:qualcomm:sd675_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sd730_firmware | — | cpe:2.3:o:qualcomm:sd730_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sd855_firmware | — | cpe:2.3:o:qualcomm:sd855_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sdx55_firmware | — | cpe:2.3:o:qualcomm:sdx55_firmware:-:*:*:*:*:*:*:* |
| qualcomm | sm6250_firmware | — | cpe:2.3:o:qualcomm:sm6250_firmware:-:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://www.qualcomm.com/company/product-security/bulletins/january-2024-bulletin | Vendor Advisory |