VYPR

Qcn9074 Firmware

by Qualcomm

CVEs (361)

  • CVE-2024-33036MedDec 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.

  • CVE-2024-33032MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.

  • CVE-2024-33016MedSep 2, 2024
    risk 0.44cvss 6.8epss 0.00

    memory corruption when an invalid firehose patch command is invoked.

  • CVE-2024-21482MedJul 1, 2024
    risk 0.44cvss 6.8epss 0.00

    Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.

  • CVE-2023-43527MedMay 6, 2024
    risk 0.44cvss 6.8epss 0.00

    Information disclosure while parsing dts header atom in Video.

  • CVE-2023-43521MedMay 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when multiple listeners are being registered with the same file descriptor.

  • CVE-2023-33077MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in HLOS while converting from authorization token to HIDL vector.

  • CVE-2023-33069MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing the calibration data returned from ACDB loader.

  • CVE-2023-33068MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing IIR config data from AFE calibration block.

  • CVE-2023-33067MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.

  • CVE-2023-22383MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in camera while installing a fd for a particular DMA buffer.

  • CVE-2023-28570MedNov 7, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing audio effects.

  • CVE-2023-21654MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio during playback session with audio effects enabled.

  • CVE-2023-28577MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel…

  • CVE-2023-28575MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.

  • CVE-2023-21649MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in WLAN while running doDriverCmd for an unspecific command.

  • CVE-2022-33245MedMar 10, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in WLAN due to use after free

  • CVE-2022-33246MedFeb 12, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user space with invalid session id.

  • CVE-2022-40519MedJan 9, 2023
    risk 0.44cvss 6.8epss 0.00

    Information disclosure due to buffer overread in Core

  • CVE-2022-40518MedJan 9, 2023
    risk 0.44cvss 6.8epss 0.00

    Information disclosure due to buffer overread in Core

Page 15 of 19