VYPR

Qcn9074 Firmware

by Qualcomm

CVEs (207)

  • CVE-2021-30288HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible stack overflow due to improper length check of TLV while copying the TLV to a local stack variable in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-30260HigSep 17, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible Integer overflow to buffer overflow issue can occur due to improper validation of input parameters when extscan hostlist configuration command is received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2021-1927HigMay 7, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables,…

  • CVE-2024-38408HigNov 4, 2024
    risk 0.53cvss 8.2epss 0.00

    Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.

  • CVE-2023-28585HigDec 5, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption while loading an ELF segment in TEE Kernel.

  • CVE-2023-21669HigJun 6, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address.

  • CVE-2022-33252HigJan 9, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while handling IBSS beacons frame.

  • CVE-2022-33235HigDec 13, 2022
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-30349HigJun 14, 2022
    risk 0.53cvss 8.2epss 0.00

    Improper access control sequence for AC database after memory allocation can lead to possible memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables,…

  • CVE-2021-35088HigApr 1, 2022
    risk 0.53cvss 8.2epss 0.01

    Possible out of bound read due to improper validation of IE length during SSID IE parse when channel is DFS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon…

  • CVE-2020-11191HigApr 7, 2021
    risk 0.53cvss 8.2epss 0.01

    Out of bound read occurs while processing crafted SDP due to lack of check of null string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2025-47339HigJan 7, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while deinitializing a HDCP session.

  • CVE-2025-27054HigOct 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing a malformed license file during reboot.

  • CVE-2025-27053HigOct 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during PlayReady APP usecase while processing TA commands.

  • CVE-2025-21481HigSep 24, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while performing private key encryption in trusted application.

  • CVE-2025-21474HigAug 6, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing commands from A2dp sink command queue.

  • CVE-2025-27043HigJul 8, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing manipulated payload in video firmware.

  • CVE-2025-27042HigJul 8, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing video packets received from video firmware.

  • CVE-2024-45564HigMay 6, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during concurrent access to server info object due to incorrect reference count update.

  • CVE-2024-43067HigApr 7, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption occurs during the copying of read data from the EEPROM because the IO configuration is exposed as shared memory.

Page 3 of 11