Sxr1230p Firmware
by Qualcomm
CVEs (268)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-40532 | Hig | 0.55 | 8.4 | 0.00 | Apr 13, 2023 | Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. | ||
| CVE-2022-40531 | Hig | 0.55 | 8.4 | 0.00 | Mar 10, 2023 | Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message. | ||
| CVE-2022-40530 | Hig | 0.55 | 8.4 | 0.00 | Mar 10, 2023 | Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase. | ||
| CVE-2022-33277 | Hig | 0.55 | 8.4 | 0.00 | Feb 12, 2023 | Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command. | ||
| CVE-2024-49839 | Hig | 0.53 | 8.2 | 0.00 | Feb 3, 2025 | Memory corruption during management frame processing due to mismatch in T2LM info element. | ||
| CVE-2024-49838 | Hig | 0.53 | 8.2 | 0.00 | Feb 3, 2025 | Information disclosure while parsing the OCI IE with invalid length. | ||
| CVE-2024-38408 | Hig | 0.53 | 8.2 | 0.00 | Nov 4, 2024 | Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions. | ||
| CVE-2024-33073 | Hig | 0.53 | 8.2 | 0.00 | Oct 7, 2024 | Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. | ||
| CVE-2023-28585 | Hig | 0.53 | 8.2 | 0.00 | Dec 5, 2023 | Memory corruption while loading an ELF segment in TEE Kernel. | ||
| CVE-2023-28545 | Hig | 0.53 | 8.2 | 0.00 | Nov 7, 2023 | Memory corruption in TZ Secure OS while loading an app ELF. | ||
| CVE-2022-33291 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length. | ||
| CVE-2022-33287 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet. | ||
| CVE-2022-25730 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in modem due to improper check of IP type while processing DNS server query | ||
| CVE-2022-25726 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet | ||
| CVE-2022-33271 | Hig | 0.53 | 8.2 | 0.00 | Feb 12, 2023 | Information disclosure due to buffer over-read in WLAN while parsing NMF frame. | ||
| CVE-2022-25738 | Hig | 0.53 | 8.2 | 0.00 | Feb 12, 2023 | Information disclosure in modem due to buffer over-red while performing checksum of packet received | ||
| CVE-2022-25732 | Hig | 0.53 | 8.2 | 0.00 | Feb 12, 2023 | Information disclosure in modem due to buffer over read in dns client due to missing length check | ||
| CVE-2022-25728 | Hig | 0.53 | 8.2 | 0.00 | Feb 12, 2023 | Information disclosure in modem due to buffer over-read while processing response from DNS server | ||
| CVE-2025-47398 | Hig | 0.51 | 7.8 | 0.00 | Feb 2, 2026 | Memory Corruption while deallocating graphics processing unit memory buffers due to improper handling of memory pointers. | ||
| CVE-2025-47397 | Hig | 0.51 | 7.8 | 0.00 | Feb 2, 2026 | Memory Corruption when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors. |
- risk 0.55cvss 8.4epss 0.00
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.
- risk 0.53cvss 8.2epss 0.00
Memory corruption during management frame processing due to mismatch in T2LM info element.
- risk 0.53cvss 8.2epss 0.00
Information disclosure while parsing the OCI IE with invalid length.
- risk 0.53cvss 8.2epss 0.00
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
- risk 0.53cvss 8.2epss 0.00
Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
- risk 0.53cvss 8.2epss 0.00
Memory corruption while loading an ELF segment in TEE Kernel.
- risk 0.53cvss 8.2epss 0.00
Memory corruption in TZ Secure OS while loading an app ELF.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in modem due to improper check of IP type while processing DNS server query
- risk 0.53cvss 8.2epss 0.00
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
- risk 0.53cvss 8.2epss 0.00
Information disclosure due to buffer over-read in WLAN while parsing NMF frame.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in modem due to buffer over-red while performing checksum of packet received
- risk 0.53cvss 8.2epss 0.00
Information disclosure in modem due to buffer over read in dns client due to missing length check
- risk 0.53cvss 8.2epss 0.00
Information disclosure in modem due to buffer over-read while processing response from DNS server
- risk 0.51cvss 7.8epss 0.00
Memory Corruption while deallocating graphics processing unit memory buffers due to improper handling of memory pointers.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption when initiating GPU memory mapping using scatter-gather lists due to unchecked IOMMU mapping errors.
Page 4 of 14