VYPR

Snapdragon Auto

by Qualcomm

CVEs (78)

  • CVE-2020-3657CriNov 2, 2020
    risk 0.66cvss 9.8epss 0.28

    u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bound check.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2020-11225CriJan 21, 2021
    risk 0.64cvss 9.8epss 0.01

    Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2020-3692CriNov 2, 2020
    risk 0.64cvss 9.8epss 0.01

    u'Possible buffer overflow while updating output buffer for IMEI and Gateway Address due to lack of check of input validation for parameters received from server' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in…

  • CVE-2019-14111CriApr 16, 2020
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow while handling NAN reception of NMF in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in IPQ6018,…

  • CVE-2019-14045CriMar 5, 2020
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow while processing clientlog and serverlog due to lack of validation of data received in logs in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile in APQ8096AU, QCS605, SDM439, SM8150, SXR1130

  • CVE-2019-10542CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    Buffer over-read may occur when downloading a corrupted firmware file that has chunk length in header which doesn`t match the contents in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2019-10531CriNov 6, 2019
    risk 0.64cvss 9.8epss 0.01

    Incorrect reading of system image resulting in buffer overflow when size of system image is increased in Snapdragon Auto, Snapdragon Mobile, Snapdragon Wearables in MDM9607, MSM8909W, Qualcomm 215, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 450, SD 625, SD 632, SDM439

  • CVE-2019-10538CriSep 30, 2019
    risk 0.64cvss 9.8epss 0.01

    Lack of check of address range received from firmware response allows modem to respond arbitrary pages into its address range which can compromise HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice…

  • CVE-2019-2276CriJul 25, 2019
    risk 0.64cvss 9.8epss 0.01

    Possible out of bound read occurs while processing beaconing request due to lack of check on action frames received from user controlled space in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Voice & Music…

  • CVE-2018-13911CriJun 14, 2019
    risk 0.64cvss 9.8epss 0.01

    Out of bounds memory read and access may lead to unexpected behavior in GNSS XTRA Parser in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150,…

  • CVE-2018-13904CriFeb 25, 2019
    risk 0.64cvss 9.8epss 0.01

    Improper input validation in SCM handler to access storage in TZ can lead to unauthorized access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in versions MDM9206,…

  • CVE-2022-33210HigOct 19, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in automotive multimedia due to use of out-of-range pointer offset while parsing command request packet with a very large type value. in Snapdragon Auto

  • CVE-2022-25680HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia due to buffer overflow while processing count variable from client in Snapdragon Auto

  • CVE-2022-22106HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia due to improper length check while copying the data in Snapdragon Auto

  • CVE-2022-22104HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia due to improper check on the messages received. in Snapdragon Auto

  • CVE-2022-22102HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia due to incorrect type conversion while adding data in Snapdragon Auto

  • CVE-2022-22100HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia due to improper check on received export descriptors in Snapdragon Auto

  • CVE-2022-22099HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia due to improper validation of array index in Snapdragon Auto

  • CVE-2022-22098HigSep 2, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in multimedia driver due to untrusted pointer dereference while reading data from socket in Snapdragon Auto

  • CVE-2021-35114HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Improper buffer initialization on the backend driver can lead to buffer overflow in Snapdragon Auto

Page 1 of 4