Security Bulletin
This security bulletin contains one medium risk vulnerability.
EUVDB-ID: #VU96686
Risk: Medium
CVSSv4.0: 6.6 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green]
CVE-ID: CVE-2024-33051
CWE-ID:
CWE-126 - Buffer over-read
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to no check for IE length in WLAN Firmware. A remote attacker can perform a denial of service (DoS) attack.
MitigationInstall update from vendor's website.
Vulnerable software versionsQualcomm Wireless LAN Driver for Windows 11 (Version 21H2 or later) - ThinkPad Z13 (Type 21D2, 21D3), Z16 (Type 21D4, 21D5): All versions
Qualcomm Wireless LAN Driver for Windows 10 64-bit (Version 21H1 or later) - ThinkPad Z13 (Type 21D2, 21D3), Z16 (Type 21D4, 21D5): All versions
ThinkPad X13s 21BY: All versions
Qualcomm Snapdragon X55 5G Wireless WAN Driver for Windows 11 ARM (Version 21H2 or later) - ThinkPad X13s Gen 1 (Type 21BX, 21BY): All versions
ThinkPad X13s 21BX: All versions
ThinkPad X13 Gen 4 21J4: All versions
ThinkPad X13 Gen 4 21J3: All versions
ThinkPad X13 Gen 2 20XJ: All versions
ThinkPad X13 Gen 2 20XH: All versions
ThinkPad T16 Gen 2 21K8: All versions
ThinkPad T16 Gen 2 21K7: All versions
ThinkPad T14s Gen 6 21N2: All versions
ThinkPad T14s Gen 6 21N1: All versions
ThinkPad T14s Gen 4 21F9: All versions
ThinkPad T14s Gen 4 21F8: All versions
Qualcomm Wireless LAN Driver for Windows 11 (Version 21H2 or later) - ThinkPad T14s Gen 3, X13 Gen 3: All versions
Qualcomm Wireless LAN Driver for Windows 10 (Version 2004 or later) - ThinkPad T14s Gen 3, X13 Gen 3: All versions
ThinkPad T14s Gen 2 20XG: All versions
ThinkPad T14s Gen 2 20XF: All versions
Qualcomm Snapdragon X55 5G Driver for Windows 10 (Version 1909 or Later) - ThinkPad T14s Gen 2, X13 Gen 2: All versions
ThinkPad T14 Gen 5 21MD: All versions
ThinkPad T14 Gen 5 21MC: All versions
ThinkPad T14 Gen 4 21K4: All versions
ThinkPad T14 Gen 4 21K3: All versions
ThinkPad T14 Gen 2 20XL: All versions
ThinkPad T14 Gen 2 20XK: All versions
ThinkPad P16v Gen 1 21FF: All versions
ThinkPad P16v Gen 1 21FE: All versions
ThinkPad P16s Gen 2 21KA: All versions
ThinkPad P16s Gen 2 21K9: All versions
Qualcomm Wireless LAN Driver for Windows 11 (Version 21H2 or later) - ThinkPad P16 Gen 1 (Type 21D6, 21D7): All versions
Qualcomm Wireless LAN Driver for Windows 10 (Version 2004 or later) - ThinkPad P16 Gen 1 (Type 21D6, 21D7): All versions
ThinkPad P15v Gen 3 21EM: All versions
ThinkPad P15v Gen 3 21EN: All versions
ThinkPad P14s Gen 5 21MF: All versions
ThinkPad P14s Gen 5 21ME: All versions
ThinkPad P14s Gen 4 21K6: All versions
ThinkPad P14s Gen 4 21K5: All versions
ThinkPad P14s Gen 2 21A1: All versions
ThinkPad P14s Gen 2 21A0: All versions
Qualcomm Snapdragon X55 5G Wireless WAN Driver for Windows 11 (Version 21H2 or later), 10 (Version 1903 or later) - ThinkPad: All versions
ThinkPad L16 Gen 1 21L8: All versions
ThinkPad L16 Gen 1 21L7: All versions
ThinkPad L15 Gen 2 20X8: All versions
ThinkPad L15 Gen 2 20X7: All versions
ThinkPad L14 Gen 5 21L6: All versions
ThinkPad L14 Gen 5 21L5: All versions
ThinkPad L14 Gen 2 20X6: All versions
ThinkPad L14 Gen 2 20X5: All versions
ThinkPad X13 Yoga Gen 4 21F3: All versions
ThinkPad X13 Yoga Gen 4 21F2: All versions
ThinkPad X13 Gen 4 21EY: All versions
ThinkPad X13 Gen 4 21EX: All versions
ThinkPad X13 Gen 3 21BQ: All versions
ThinkPad X13 Gen 3 21BN: All versions
ThinkPad X1 Nano Gen 1 20UQ: All versions
ThinkPad X1 Nano Gen 1 20UN: All versions
ThinkPad T14s Gen 4 21F7: All versions
ThinkPad T14s Gen 4 21F6: All versions
ThinkPad T14s Gen 3 21BS: All versions
ThinkPad T14s Gen 3 21BR: All versions
ThinkPad T16 Gen 2 21HJ: All versions
ThinkPad T16 Gen 2 21HH: All versions
ThinkPad T14 Gen 4 21HE: All versions
ThinkPad T14 Gen 4 21HD: All versions
ThinkPad P16s Gen 2 21HL: All versions
ThinkPad P16s Gen 2 21HK: All versions
ThinkPad P14s Gen 4 21HG: All versions
ThinkPad P14s Gen 4 21HF: All versions
ThinkPad X13 Gen 2 20WL: All versions
ThinkPad X13 Gen 2 20WK: All versions
ThinkPad X1 Titanium 20QB: All versions
ThinkPad X1 Titanium 20QA: All versions
ThinkPad X1 Carbon 9th Gen 20XX: All versions
ThinkPad X1 Carbon 9th Gen 20XW: All versions
ThinkPad T16 Gen 1 21BW: All versions
ThinkPad T16 Gen 1 21BV: All versions
ThinkPad T14s Gen 2 20WN: All versions
ThinkPad T14s Gen 2 20WM: All versions
ThinkPad T14 Gen 3 21AJ: All versions
ThinkPad T14 Gen 3 21AH: All versions
ThinkPad P16s Gen 1 21BU: All versions
ThinkPad P16s Gen 1 21BT: All versions
ThinkPad P16 Gen 1 21D7: All versions
ThinkPad P16 Gen 1 21D6: All versions
ThinkPad P14s Gen 3 21AL: All versions
ThinkPad P14s Gen 3 21AK: All versions
ThinkPad Z16 Gen 1 21D5: All versions
ThinkPad Z16 Gen 1 21D4: All versions
ThinkPad Z13 Gen 1 21D3: All versions
ThinkPad Z13 Gen 1 21D2: All versions
ThinkPad X1 Extreme 4th Gen 20Y6: All versions
ThinkPad X1 Extreme 4th Gen 20Y5: All versions
ThinkPad P1 Gen 4 20Y4: All versions
ThinkPad P1 Gen 4 20Y3: All versions
ThinkPad X1 Fold Gen 1 20RL: All versions
ThinkPad X1 Fold Gen 1 20RK: All versions
ThinkPad X1 Yoga 6th Gen 20Y0: All versions
ThinkPad X1 Yoga 6th Gen 20XY: All versions
Qualcomm Wireless LAN Driver for Windows 11 ARM (Version 21H2 or later) - ThinkPad X13s Gen 1 (Type 21BX, 21BY): before 1.0.4065.7101
Qualcomm Wireless LAN Driver for Windows 11 (Version 21H2 or later) - ThinkPad X13 Gen 4 (Type 21J3, 21J4): before 2.0.0.1193
Qualcomm Wireless Driver for Windows 10 (Version 21H2 or later) - ThinkPad X13 Gen 4 (Type 21J3, 21J4): before 1.0.0.1671
Qualcomm Integrated System Software and Firmware Package for Windows 11 ARM (Version 24H2 or later) - ThinkPad T14s Gen 6 (Type 21N1, 21N2): before 1.0.0.11
Qualcomm Wireless Driver for Windows 11 (Version 21H2 or later) - ThinkPad P16v Gen 1 (Type 21FE, 21FF): before 1.0.0.1694
Qualcomm Wireless Driver for Windows 10 (Version 21H2 or later) - ThinkPad P16v Gen 1 (Type 21FE, 21FF): before 1.0.0.1694
Qualcomm Wireless LAN Driver for Windows 11 (Version 21H2 or later) - ThinkPad P15v Gen 3 (Type 21EN 21EM): before 2.0.0.1215
Qualcomm Wireless LAN Driver for Windows 10 (Version 2004 or later) - ThinkPad P15v Gen 3 (Type 21EM, 21EN): before 1.0.0.1688
Qualcomm FastConnect 7800 Wi-Fi 7 Dual Band Simultaneous Network Adapter for Windows 11 (Version 22H2 or later) - ThinkPad T14 Gen 5 (Type 21MC, 21MD), P14s Gen 5 (Type 21ME, 21MF): before 3.1.01323
Qualcomm FastConnect 6900 Wi-Fi 6E Dual Band Simultaneous WiFiCx Network Adapter for Windows 11 (Version 22H2 or later) - ThinkPad P14s Gen 5 (Type 21ME, 21MF), T14 Gen 5 (Type 21MC, 21MD): before 2.0.0.1229
Qualcomm FastConnect 6900 Wi-Fi 6E Dual Band Simultaneous WiFiCx Network Adapter for Windows 10 64-bit (Version 21H2 or later) - ThinkPad P14s Gen 5 (Type 21ME, 21MF), T14 Gen 5 (Type 21MC, 21MD): before 1.0.0.1694
Qualcomm Wireless Driver for Windows 10 64-bit (Version 21H2 or later) - ThinkPad: before 1.0.0.1694
Qualcomm Wireless LAN Driver for Windows 11 (Version 21H2 or later) - ThinkPad: before 2.0.0.1221
Qualcomm Wireless Driver for Windows 10 (Version 21H2) - ThinkPad: before 1.0.0.1694
Qualcomm Wireless LAN Driver for Windows 11 (Version 21H2 or later) - ThinkPad T14 Gen 3, T16 Gen 1, P14s Gen 3, P16s, Gen 1: before 2.0.0.1193
Qualcomm Wireless LAN Driver for Windows 10 (Version 2004 or later) - ThinkPad T14 Gen 3, T16 Gen 1, P14s Gen 3, P16s, Gen 1: before 1.0.0.1671
Qualcomm Wireless LAN Driver for Windows 11 (Version 22H2 or later) - ThinkPad L14 Gen 5 (Type 21L5, 21L6), L16 Gen 1 (Type 21L7 21L8): before 2.0.0.1229
Qualcomm Wireless LAN Driver for Windows 10 (Version 21H2 or later) - ThinkPad L14 Gen 5 (Type 21L5, 21L6), L16 Gen 1 (Type 21L7 21L8): before 2.0.0.1277
Qualcomm Bluetooth Driver for Windows 11 (Version 22H2 or later) - ThinkPad L14 Gen 5 (Type 21L5, 21L6), L16 Gen 1 (Type 21L7 21L8): before 2.0.0.1229
CPE2.3https://support.lenovo.com/us/en/product_security/LEN-165230
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.