VYPR

Wcn6855 Firmware

by Qualcomm

CVEs (379)

  • CVE-2020-11235HigJun 9, 2021
    risk 0.51cvss 7.8epss 0.00

    Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2021-1915HigMay 7, 2021
    risk 0.51cvss 7.8epss 0.00

    Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2020-11289HigMay 7, 2021
    risk 0.51cvss 7.8epss 0.00

    Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2020-11288HigMay 7, 2021
    risk 0.51cvss 7.8epss 0.00

    Out of bound write can occur in playready while processing command due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

  • CVE-2023-21652HigAug 8, 2023
    risk 0.50cvss 7.7epss 0.00

    Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use.

  • CVE-2022-22069HigSep 2, 2022
    risk 0.50cvss 7.7epss 0.00

    Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2021-35116HigJun 14, 2022
    risk 0.50cvss 7.7epss 0.00

    APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2023-21653HigSep 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem while processing RRC reconfiguration message.

  • CVE-2023-21646HigSep 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem while processing invalid System Information Block 1.

  • CVE-2022-40527HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.

  • CVE-2022-33309HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.

  • CVE-2022-33272HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in modem due to reachable assertion.

  • CVE-2022-33254HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem while processing SIB1 Message.

  • CVE-2022-33250HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE handover.

  • CVE-2022-33244HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout

  • CVE-2022-33213HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Memory corruption in modem due to buffer overflow while processing a PPP packet

  • CVE-2022-40512HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.

  • CVE-2022-40502HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper input validation in WLAN Host.

  • CVE-2022-34146HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation.

  • CVE-2022-34145HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to buffer over-read in WLAN Host while parsing frame information.

Page 11 of 19