Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Dec 26, 2023

High
CISA KEV

CVE-2023-33107

QualcommMultiple Chipsets

Multiple Qualcomm chipsets contain an integer overflow vulnerability due to memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

Required Action

This vulnerability affects a common open-source component, third-party library, or a protocol used by different products. Please check with specific vendors for information on patching status. For more information, please see: https://git.codelinaro.org/clo/la/kernel/msm-4.19/-/commit/d66b799c804083ea5226cfffac6d6c4e7ad4968b; https://nvd.nist.gov/vuln/detail/CVE-2023-33107

Vulnerability Overview

Severity
High
CISA KEV
Yes
Ransomware
Unknown
Published
Dec 5, 2023
KEV Added
Dec 5, 2023
Due Date
Dec 26, 2023
Related Articles
0

Vendor

Qualcomm

Multiple Chipsets