CVE-2023-43513
Use of Out-of-range Pointer Offset in PCIe
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.8EPSS 0.1%KEV nãoPoC —Patch —
Lifecycle
06 Feb 2024Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
Qualcomm, Inc. · SnapdragonWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →