December 5, 2023 · Applied Cybernetics Group
CVE-2023-33107 — Qualcomm Multiple Chipsets
Qualcomm Multiple Chipsets Integer Overflow Vulnerability
- Added to KEV
2023-12-05- Federal due date
2023-12-26- Vendor
- Qualcomm
- Product
- Multiple Chipsets
- EPSS
- 61.0th percentile (score 0.004, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2023-33107
CISA short description
Multiple Qualcomm chipsets contain an integer overflow vulnerability due to memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.
Required action
Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.