{"id":"CVE-2026-24077","published":"2026-08-04T16:16:23.050","lastModified":"2026-08-06T18:33:25.020","description":"Information Disclosure when processing wireless network channel switch information with improperly formatted length fields.","cvssScore":6.5,"cvssSeverity":"MEDIUM","cvssVector":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","cwes":["CWE-191"],"vendors":["qualcomm"],"products":["aqt1000 firmware","aqt1000","ar8035 firmware","ar8035","csra6620 firmware","csra6620","csra6640 firmware","csra6640","fastconnect 6200 firmware","fastconnect 6200","wcd9395 firmware","wcd9395"],"references":[{"url":"https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2026-bulletin.html","tags":["Patch","Vendor Advisory"]}],"exploitRefs":[],"hasPoc":false,"ai":{"summary":"The flaw involves improper handling of length fields during wireless network channel switch processing, leading to potential information disclosure.","exploitability":"Exploitation requires specific conditions and is moderately difficult; attackers need access to improperly formatted length fields.","blast_radius":"If exploited, it could lead to sensitive information exposure within the affected firmware's environment.","remediation":"Update to the latest firmware versions for all affected devices immediately.","tags":["info-disc","wireless","firmware"],"model":"qwen2.5:7b-instruct","analyzedAt":"2026-08-11T07:05:45.715Z"}}