Qcs6490 Firmware
by Qualcomm
CVEs (325)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-21441 | Hig | 0.51 | 7.8 | 0.00 | Apr 7, 2025 | Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. | ||
| CVE-2025-21440 | Hig | 0.51 | 7.8 | 0.00 | Apr 7, 2025 | Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. | ||
| CVE-2025-21439 | Hig | 0.51 | 7.8 | 0.00 | Apr 7, 2025 | Memory corruption may occur while reading board data via IOCTL call when the WLAN driver copies the content to the provided output buffer. | ||
| CVE-2025-21438 | Hig | 0.51 | 7.8 | 0.00 | Apr 7, 2025 | Memory corruption while IOCTL call is invoked from user-space to read board data. | ||
| CVE-2025-21423 | Hig | 0.51 | 7.8 | 0.00 | Apr 7, 2025 | Memory corruption occurs when handling client calls to EnableTestMode through an Escape call. | ||
| CVE-2024-43066 | Hig | 0.51 | 7.8 | 0.00 | Apr 7, 2025 | Memory corruption while handling file descriptor during listener registration/de-registration. | ||
| CVE-2025-21424 | Hig | 0.51 | 7.8 | 0.00 | Mar 3, 2025 | Memory corruption while calling the NPU driver APIs concurrently. | ||
| CVE-2024-53024 | Hig | 0.51 | 7.8 | 0.00 | Mar 3, 2025 | Memory corruption in display driver while detaching a device. | ||
| CVE-2024-45542 | Hig | 0.51 | 7.8 | 0.00 | Jan 6, 2025 | Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. | ||
| CVE-2024-38424 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2024 | Memory corruption during GNSS HAL process initialization. | ||
| CVE-2024-38419 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2024 | Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node. | ||
| CVE-2024-38407 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2024 | Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver. | ||
| CVE-2024-38406 | Hig | 0.51 | 7.8 | 0.00 | Nov 4, 2024 | Memory corruption while handling IOCTL calls in JPEG Encoder driver. | ||
| CVE-2024-33054 | Hig | 0.51 | 7.8 | 0.00 | Sep 2, 2024 | Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine. | ||
| CVE-2024-33052 | Hig | 0.51 | 7.8 | 0.00 | Sep 2, 2024 | Memory corruption when user provides data for FM HCI command control operations. | ||
| CVE-2023-43542 | Hig | 0.51 | 7.8 | 0.00 | Jun 3, 2024 | Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked. | ||
| CVE-2024-21475 | Hig | 0.51 | 7.8 | 0.00 | May 6, 2024 | Memory corruption when the payload received from firmware is not as per the expected protocol size. | ||
| CVE-2023-33115 | Hig | 0.51 | 7.8 | 0.00 | Apr 1, 2024 | Memory corruption while processing buffer initialization, when trusted report for certain report types are generated. | ||
| CVE-2023-43550 | Hig | 0.51 | 7.8 | 0.00 | Mar 4, 2024 | Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem. | ||
| CVE-2023-33120 | Hig | 0.51 | 7.8 | 0.00 | Jan 2, 2024 | Memory corruption in Audio when memory map command is executed consecutively in ADSP. |
- risk 0.51cvss 7.8epss 0.00
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption may occur while reading board data via IOCTL call when the WLAN driver copies the content to the provided output buffer.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while IOCTL call is invoked from user-space to read board data.
- risk 0.51cvss 7.8epss 0.00
Memory corruption occurs when handling client calls to EnableTestMode through an Escape call.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling file descriptor during listener registration/de-registration.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while calling the NPU driver APIs concurrently.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in display driver while detaching a device.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during GNSS HAL process initialization.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling IOCTL calls in JPEG Encoder driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when user provides data for FM HCI command control operations.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when the payload received from firmware is not as per the expected protocol size.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in Audio when memory map command is executed consecutively in ADSP.
Page 8 of 17