VYPR

Wcn3991 Firmware

by Qualcomm

CVEs (471)

  • CVE-2020-11171CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11166CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Potential out of bound read exception when UE receives unusually large number of padding octets in the beginning of ROHC header in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,…

  • CVE-2020-11276CriFeb 22, 2021
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper validation of P2P IE and NOA attribute lengths in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2020-11275CriFeb 22, 2021
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beacon in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2021-35123HigJun 14, 2022
    risk 0.57cvss 8.8epss 0.00

    Buffer copy in GATT multi notification due to improper length check for the data coming over-the-air in Snapdragon Connectivity, Snapdragon Industrial IOT

  • CVE-2020-11269HigFeb 22, 2021
    risk 0.57cvss 8.8epss 0.00

    Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2020-11177HigFeb 22, 2021
    risk 0.57cvss 8.8epss 0.00

    User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and device lock in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2023-33022HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in HLOS while invoking IOCTL calls from user-space.

  • CVE-2023-33029HigOct 3, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in DSP Service during a remote call from HLOS to DSP.

  • CVE-2022-33275HigSep 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.

  • CVE-2023-28537HigAug 8, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while allocating memory in COmxApeDec module in Audio.

  • CVE-2023-22666HigAug 8, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Audio while playing amrwbplus clips with modified content.

  • CVE-2023-21628HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.

  • CVE-2022-40522HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Linux Networking due to double free while handling a hyp-assign.

  • CVE-2022-40507HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.01

    Memory corruption due to double free in Core while mapping HLOS address to the list.

  • CVE-2022-33307HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.

  • CVE-2022-40531HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.

  • CVE-2022-40530HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.

  • CVE-2022-25709HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in modem due to use of out of range pointer offset while processing qmi msg

  • CVE-2022-25694HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Modem due to usage of Out-of-range pointer offset in UIM

Page 4 of 24