VYPR

Qcn6112 Firmware

by Qualcomm

CVEs (130)

  • CVE-2024-23368HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition.

  • CVE-2023-28573HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while parsing WMI command parameters.

  • CVE-2023-28567HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while handling command through WMI interfaces.

  • CVE-2023-28557HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.

  • CVE-2023-28549HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload.

  • CVE-2023-28548HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing Tx/Rx commands from QDART.

  • CVE-2023-22386HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory.

  • CVE-2021-35129HigJun 14, 2022
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in BT controller due to improper length check while processing vendor specific commands in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure…

  • CVE-2021-35103HigApr 1, 2022
    risk 0.51cvss 7.8epss 0.00

    Possible out of bound write due to improper validation of number of timer values received from firmware while syncing timers in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired…

  • CVE-2021-35069HigFeb 11, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper validation of data length received from DMA buffer can lead to memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired…

  • CVE-2025-47326HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling command data during power control processing.

  • CVE-2025-47318HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the EPTM test control message to get the test pattern.

  • CVE-2025-27066HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing an ANQP message.

  • CVE-2025-27057HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling beacon frames with invalid IE header length.

  • CVE-2025-21446HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.

  • CVE-2025-21463HigJun 3, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing the EHT operation IE in the received beacon frame.

  • CVE-2025-21448HigApr 7, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while parsing SSID in action frames.

  • CVE-2025-21435HigApr 7, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while parsing extended IE in beacon.

  • CVE-2024-45558HigJan 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.

  • CVE-2024-33049HigOct 7, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame.

Page 3 of 7