VYPR

Sm7250p Firmware

by Qualcomm

CVEs (337)

  • CVE-2020-11189CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11171CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11166CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Potential out of bound read exception when UE receives unusually large number of padding octets in the beginning of ROHC header in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,…

  • CVE-2020-11276CriFeb 22, 2021
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper validation of P2P IE and NOA attribute lengths in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2020-11275CriFeb 22, 2021
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beacon in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2023-21673HigOct 3, 2023
    risk 0.57cvss 8.7epss 0.00

    Improper Access to the VM resource manager can lead to Memory Corruption.

  • CVE-2020-11177HigFeb 22, 2021
    risk 0.57cvss 8.8epss 0.00

    User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and device lock in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2024-33056HigDec 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition continuously.

  • CVE-2024-23373HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.

  • CVE-2023-43531HigMay 6, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while verifying the serialized header when the key pairs are generated.

  • CVE-2024-21468HigApr 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when there is failed unmap operation in GPU.

  • CVE-2023-33066HigMar 4, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Audio while processing RT proxy port register driver.

  • CVE-2023-33094HigJan 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while running VK synchronization with KASAN enabled.

  • CVE-2023-33033HigJan 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Audio during playback with speaker protection.

  • CVE-2023-33092HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while processing pin reply in Bluetooth, when pin code received from APP layer is greater than expected size.

  • CVE-2023-33088HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when processing cmd parameters while parsing vdev.

  • CVE-2023-33022HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in HLOS while invoking IOCTL calls from user-space.

  • CVE-2023-24852HigNov 7, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Core due to secure memory access by user while loading modem image.

  • CVE-2023-24853HigOct 3, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in HLOS while registering for key provisioning notify.

  • CVE-2023-28538HigSep 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WIN Product while invoking WinAcpi update driver in the UEFI region.

Page 3 of 17