9.8
CVSSv3

CVE-2023-28543

Published: 05/09/2023 Updated: 12/04/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A malformed DLC can trigger Memory Corruption in SNPE library due to out of bounds read, such as by loading an untrusted model (e.g. from a remote source).

Vulnerable Product Search on Vulmon Subscribe to Product

qualcomm sd855_firmware -

qualcomm sd845_firmware -

qualcomm qcs605_firmware -

qualcomm qcs405_firmware -