VYPR

Qcn9074 Firmware

by Qualcomm

CVEs (209)

  • CVE-2023-28556HigNov 7, 2023
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue in HLOS during key management.

  • CVE-2022-40529HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Memory corruption due to improper access control in kernel while processing a mapping request from root process.

  • CVE-2020-11250HigJun 9, 2021
    risk 0.46cvss 7.0epss 0.00

    Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon…

  • CVE-2024-33032MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.

  • CVE-2024-33016MedSep 2, 2024
    risk 0.44cvss 6.8epss 0.00

    memory corruption when an invalid firehose patch command is invoked.

  • CVE-2024-21482MedJul 1, 2024
    risk 0.44cvss 6.8epss 0.00

    Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.

  • CVE-2023-43521MedMay 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when multiple listeners are being registered with the same file descriptor.

  • CVE-2023-33077MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in HLOS while converting from authorization token to HIDL vector.

  • CVE-2023-33069MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing the calibration data returned from ACDB loader.

  • CVE-2023-33068MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing IIR config data from AFE calibration block.

  • CVE-2023-33067MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.

  • CVE-2023-22383MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in camera while installing a fd for a particular DMA buffer.

  • CVE-2023-28570MedNov 7, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing audio effects.

  • CVE-2023-28577MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel…

  • CVE-2023-28575MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.

  • CVE-2021-30266MedNov 12, 2021
    risk 0.44cvss 6.7epss 0.00

    Possible use after free due to improper memory validation when initializing new interface via Interface add command in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,…

  • CVE-2021-30264MedNov 12, 2021
    risk 0.44cvss 6.7epss 0.00

    Possible use after free due improper validation of reference from call back to internal store table in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon…

  • CVE-2024-53013MedJun 3, 2025
    risk 0.43cvss 6.6epss 0.00

    Memory corruption may occur while processing voice call registration with user.

  • CVE-2024-45570MedMay 6, 2025
    risk 0.43cvss 6.6epss 0.00

    Memory corruption may occur during IO configuration processing when the IO port count is invalid.

  • CVE-2024-45562MedMay 6, 2025
    risk 0.43cvss 6.6epss 0.00

    Memory corruption during concurrent access to server info object due to unprotected critical field.