Total
56 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-21665 | 1 Qualcomm | 440 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8905 and 437 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption in Graphics while importing a file. | |||||
CVE-2023-21628 | 1 Qualcomm | 566 Apq8017, Apq8017 Firmware, Apq8064au and 563 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. | |||||
CVE-2022-40532 | 1 Qualcomm | 706 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8905 and 703 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. | |||||
CVE-2022-40523 | 1 Qualcomm | 370 9205 Lte Modem, 9205 Lte Modem Firmware, Aqt1000 and 367 more | 2024-04-12 | N/A | 5.5 MEDIUM |
Information disclosure in Kernel due to indirect branch misprediction. | |||||
CVE-2022-40521 | 1 Qualcomm | 484 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8953pro and 481 more | 2024-04-12 | N/A | 7.5 HIGH |
Transient DOS due to improper authorization in Modem | |||||
CVE-2022-40507 | 1 Qualcomm | 484 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 481 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption due to double free in Core while mapping HLOS address to the list. | |||||
CVE-2022-40504 | 1 Qualcomm | 378 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8905 and 375 more | 2024-04-12 | N/A | 7.5 HIGH |
Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network. | |||||
CVE-2022-40503 | 1 Qualcomm | 370 8905, 8905 Firmware, 8909 and 367 more | 2024-04-12 | N/A | 7.5 HIGH |
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming. | |||||
CVE-2022-33307 | 1 Qualcomm | 220 Aqt1000, Aqt1000 Firmware, Qam8255p and 217 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed. | |||||
CVE-2022-33302 | 1 Qualcomm | 450 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8905 and 447 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length. | |||||
CVE-2022-33289 | 1 Qualcomm | 452 315 5g Iot Modem, 315 5g Iot Modem Firmware, 7wcn785x-1 and 449 more | 2024-04-12 | N/A | 6.8 MEDIUM |
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card. | |||||
CVE-2022-33288 | 1 Qualcomm | 256 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 253 more | 2024-04-12 | N/A | 8.8 HIGH |
Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information. | |||||
CVE-2022-33273 | 1 Qualcomm | 198 Aqt1000, Aqt1000 Firmware, Ar8035 and 195 more | 2024-04-12 | N/A | 5.5 MEDIUM |
Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. | |||||
CVE-2022-33269 | 1 Qualcomm | 202 Aqt1000, Aqt1000 Firmware, Ar8035 and 199 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. | |||||
CVE-2022-33264 | 1 Qualcomm | 484 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8953pro and 481 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. | |||||
CVE-2022-33231 | 1 Qualcomm | 438 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8098 and 435 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption due to double free in core while initializing the encryption key. | |||||
CVE-2022-22076 | 1 Qualcomm | 696 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8953pro and 693 more | 2024-04-12 | N/A | 5.5 MEDIUM |
information disclosure due to cryptographic issue in Core during RPMB read request. | |||||
CVE-2023-43511 | 1 Qualcomm | 712 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9206 Lte Modem and 709 more | 2024-04-12 | N/A | 7.5 HIGH |
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header. | |||||
CVE-2023-33120 | 1 Qualcomm | 464 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9206 Lte Modem and 461 more | 2024-04-12 | N/A | 7.8 HIGH |
Memory corruption in Audio when memory map command is executed consecutively in ADSP. | |||||
CVE-2023-33110 | 1 Qualcomm | 246 Snapdragon 425 Mobile Platform, Snapdragon 425 Mobile Platform Firmware, Snapdragon 427 Mobile Platform and 243 more | 2024-04-12 | N/A | 7.0 HIGH |
The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption. |