VYPR

Qcn9074 Firmware

by Qualcomm

CVEs (361)

  • CVE-2023-24851HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in WLAN HOST while parsing QMI response message from firmware.

  • CVE-2023-22387HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.

  • CVE-2023-22386HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory.

  • CVE-2023-21670HigJun 6, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.

  • CVE-2022-33242HigMar 10, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption due to improper authentication in Qualcomm IPC while loading unsigned lib in audio PD.

  • CVE-2021-35129HigJun 14, 2022
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in BT controller due to improper length check while processing vendor specific commands in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure…

  • CVE-2021-35103HigApr 1, 2022
    risk 0.51cvss 7.8epss 0.00

    Possible out of bound write due to improper validation of number of timer values received from firmware while syncing timers in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired…

  • CVE-2021-1950HigApr 1, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper cleaning of secure memory between authenticated users can lead to face authentication bypass in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking

  • CVE-2021-35069HigFeb 11, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper validation of data length received from DMA buffer can lead to memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired…

  • CVE-2021-30303HigJan 3, 2022
    risk 0.51cvss 7.8epss 0.00

    Possible buffer overflow due to lack of buffer length check when segmented WMI command is received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2020-11235HigJun 9, 2021
    risk 0.51cvss 7.8epss 0.00

    Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2021-1915HigMay 7, 2021
    risk 0.51cvss 7.8epss 0.00

    Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2020-11289HigMay 7, 2021
    risk 0.51cvss 7.8epss 0.00

    Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2020-11204HigFeb 22, 2021
    risk 0.51cvss 7.8epss 0.00

    Possible memory corruption and information leakage in sub-system due to lack of check for validity and boundary compliance for parameters that are read from shared MSG RAM in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon…

  • CVE-2025-47328HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing power control requests with invalid antenna or stream values.

  • CVE-2025-47326HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling command data during power control processing.

  • CVE-2025-47318HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the EPTM test control message to get the test pattern.

  • CVE-2025-27073HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while creating NDP instance.

  • CVE-2025-27066HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing an ANQP message.

  • CVE-2025-27065HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing a frame with malformed shared-key descriptor.

Page 8 of 19