CVE-2023-28566 | Qualcomm 4 Gen 1 Mobile Platform WLAN HAL information disclosure
A vulnerability classified as problematic has been found in Qualcomm 4 Gen 1 Mobile Platform, 4 Gen 2 Mobile Platform, 7c Compute Platform (SC7180-AC), 7c Gen 2 Compute Platform (SC7180-AD) "Rennell Pro", 8c Compute Platform (SC8180X-AD) "Poipu Lite", 8c Compute Platform (SC8180XP-AD) "Poipu Lite", 8cx Compute Platform (SC8180X-AA, 8cx Compute Platform (SC8180XP-AC, 8cx Gen 2 5G Compute Platform (SC8180X-AC, 8cx Gen 2 5G Compute Platform (SC8180XP-AA, 460 Mobile Platform, 480 5G Mobile Platform, 480+ 5G Mobile Platform (SM4350-AC), 660 Mobile Platform, 662 Mobile Platform, 665 Mobile Platform, 670 Mobile Platform, 675 Mobile Platform, 678 Mobile Platform (SM6150-AC), 680 4G Mobile Platform, 685 4G Mobile Platform (SM6225-AD), 690 5G Mobile Platform, 695 5G Mobile Platform, 710 Mobile Platform, 712 Mobile Platform, 720G Mobile Platform, 730 Mobile Platform (SM7150-AA), 730G Mobile Platform (SM7150-AB), 732G Mobile Platform (SM7150-AC), 750G 5G Mobile Platform, 765 5G Mobile Platform (SM7250-AA), 765G 5G Mobile Platform (SM7250-AB), 768G 5G Mobile Platform (SM7250-AC), 835 Mobile PC Platform, 845 Mobile Platform, 850 Mobile Compute Platform, 855 Mobile Platform, 855+, 860 Mobile Platform (SM8150-AC), AB), AF) "Poipu Pro", AQT1000, Auto 4G Modem, Auto 5G Modem-RF, CSRB31024, FastConnect 6200, FastConnect 6700, FastConnect 6800, FastConnect 6900, QCA6310, QCA6320, QCA6335, QCA6391, QCA6420, QCA6430, QCA6554A, QCA6564AU, QCA6574, QCA6574A, QCA6574AU, QCA6584AU, QCA6595, QCA6595AU, QCA6696, QCM4325, QCM4490, QCM6125, QCN7605, QCN7606, QCS410, QCS610, QCS4490, QCS6125, Qualcomm Video Collaboration VC1 Platform, Qualcomm Video Collaboration VC3 Platform, Robotics RB3 Platform, SA6145P, SA6150P, SA6155, SA6155P, SA8145P, SA8150P, SA8155, SA8155P, SA8195P, SC8180X+SDX55, SD 8CX, SD460, SD660, SD662, SD670, SD 675, SD675, SD730, SD835, SD855, SDX55, SG4150P, SM4125 and SM6250. This affects an unknown part of the component WLAN HAL. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2023-28566. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.