CVE-2023-33106
HIGHMemory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.
EPSS Exploitation Probability
EPSS (Exploit Prediction Scoring System) is a daily probability model maintained by FIRST.org. It estimates the likelihood a CVE will be exploited in production environments within the next 30 days, derived from real-world threat intelligence signals.
Description
Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.
Affected Products
ar8035 firmwarequalcommcsra6620 firmwarequalcommcsra6640 firmwarequalcommfastconnect 6200 firmwarequalcommfastconnect 6700 firmwarequalcommfastconnect 6800 firmwarequalcommResearch use only. For defensive security, authorized penetration testing, and academic research only. Never execute exploit code against systems without explicit written authorization.
Memory corruption while submitting a large list of sync points in an AUX…
Memory corruption while submitting a large list of sync points in an AUX…
Memory corruption while submitting a large list of sync points in an AUX…
Frequently Asked Questions
Is CVE-2023-33106 in your stack?
O3 detects CVE-2023-33106 across dependencies and uses function-level reachability to confirm whether the vulnerable code path is actually reachable — not just present. No false positives.