VYPR

Qrb5165 Firmware

by Qualcomm

CVEs (186)

  • CVE-2021-30318HigFeb 11, 2022
    risk 0.55cvss 8.4epss 0.00

    Improper validation of input when provisioning the HDCP key can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30337HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible use after free when process shell memory is freed using IOCTL call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,…

  • CVE-2021-30335HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible assertion in QOS request due to improper validation when multiple add or update request are received simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2021-30282HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible out of bound write in RAM partition table due to improper validation on number of partitions provided in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired…

  • CVE-2021-30274HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible integer overflow in access control initialization interface due to lack and size and address validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired…

  • CVE-2021-30262HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Improper validation of a socket state when socket events are being sent to clients can lead to invalid access of memory in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2021-30306HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible buffer over read due to improper buffer allocation for file length passed from user space in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30288HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible stack overflow due to improper length check of TLV while copying the TLV to a local stack variable in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-1949HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible integer overflow due to improper check of batch count value while sanitizer is enabled in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30260HigSep 17, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible Integer overflow to buffer overflow issue can occur due to improper validation of input parameters when extscan hostlist configuration command is received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2021-1947HigSep 17, 2021
    risk 0.55cvss 8.4epss 0.00

    Use-after-free vulnerability in kernel graphics driver because of storing an invalid pointer in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

  • CVE-2021-30295HigSep 9, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible heap overflow due to improper validation of local variable while storing current task information locally in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2023-21669HigJun 6, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address.

  • CVE-2022-40503HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.

  • CVE-2022-33271HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while parsing NMF frame.

  • CVE-2022-33284HigJan 9, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while parsing BTM action frame.

  • CVE-2022-33283HigJan 9, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while WLAN frame parsing due to missing frame length check.

  • CVE-2022-33255HigJan 9, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in Bluetooth HOST while processing GetFolderItems and GetItemAttribute Cmds from peer device.

  • CVE-2022-33252HigJan 9, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while handling IBSS beacons frame.

  • CVE-2022-25746HigJan 9, 2023
    risk 0.53cvss 8.1epss 0.00

    Memory corruption in kernel due to missing checks when updating the access rights of a memextent mapping.

Page 4 of 10