VYPR

Snapdragon Connectivity

by Qualcomm

CVEs (62)

  • CVE-2020-11117CriSep 8, 2020
    risk 0.65cvss 9.8epss 0.20

    u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Wired Infrastructure and Networking in…

  • CVE-2022-25708CriSep 16, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN due to buffer copy without checking size of input while parsing keys in Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2022-22096CriSep 2, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in Bluetooth HOST due to stack-based buffer overflow when when extracting data using command length parameter in Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2021-30321CriNov 12, 2021
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity

  • CVE-2020-11225CriJan 21, 2021
    risk 0.64cvss 9.8epss 0.01

    Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2019-14111CriApr 16, 2020
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow while handling NAN reception of NMF in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ6018,…

  • CVE-2021-30276CriJan 3, 2022
    risk 0.60cvss 9.3epss 0.00

    Improper access control while doing XPU re-configuration dynamically can lead to unauthorized access to a secure resource in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wired Infrastructure and Networking

  • CVE-2020-3653CriApr 16, 2020
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over-read in windows wlan driver function due to lack of check of length of variable received from userspace in Snapdragon Compute, Snapdragon Connectivity in MSM8998, QCA6390, SC7180, SC8180X, SDM850

  • CVE-2020-3652CriApr 16, 2020
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack of check of length of variable received. in Snapdragon Compute, Snapdragon Connectivity in MSM8998, QCA6390, SC7180, SC8180X, SDM850

  • CVE-2021-35123HigJun 14, 2022
    risk 0.57cvss 8.8epss 0.00

    Buffer copy in GATT multi notification due to improper length check for the data coming over-the-air in Snapdragon Connectivity, Snapdragon Industrial IOT

  • CVE-2022-25693HigSep 16, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in graphics due to use-after-free while graphics profiling in Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2022-22095HigSep 16, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in synx driver due to use-after-free condition in the synx driver due to accessing object handles without acquiring lock in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-35134HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Due to insufficient validation of ELF headers, an Incorrect Calculation of Buffer Size can occur in Boot leading to memory corruption in Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2022-22090HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in audio due to use after free while managing buffers from internal cache in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2021-35095HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Improper serialization of message queue client registration can lead to race condition allowing multiple gunyah message clients to register with same label in Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2021-35091HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible out of bounds read due to improper typecasting while handling page fault for global memory in Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2021-30306HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible buffer over read due to improper buffer allocation for file length passed from user space in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30305HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible out of bound access due to lack of validation of page offset before page is inserted in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30292HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible memory corruption due to lack of validation of client data used for memory allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Wearables

  • CVE-2021-30257HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible out of bound read or write in VR service due to lack of validation of DSP selection values in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT

Page 1 of 4