Wcn6855 Firmware
by Qualcomm
CVEs (379)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-11235 | Hig | 0.51 | 7.8 | 0.00 | Jun 9, 2021 | Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon… | ||
| CVE-2021-1915 | Hig | 0.51 | 7.8 | 0.00 | May 7, 2021 | Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,… | ||
| CVE-2020-11289 | Hig | 0.51 | 7.8 | 0.00 | May 7, 2021 | Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon… | ||
| CVE-2020-11288 | Hig | 0.51 | 7.8 | 0.00 | May 7, 2021 | Out of bound write can occur in playready while processing command due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music | ||
| CVE-2023-21652 | Hig | 0.50 | 7.7 | 0.00 | Aug 8, 2023 | Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use. | ||
| CVE-2022-22069 | Hig | 0.50 | 7.7 | 0.00 | Sep 2, 2022 | Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables | ||
| CVE-2021-35116 | Hig | 0.50 | 7.7 | 0.00 | Jun 14, 2022 | APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables | ||
| CVE-2023-21653 | Hig | 0.49 | 7.5 | 0.00 | Sep 5, 2023 | Transient DOS in Modem while processing RRC reconfiguration message. | ||
| CVE-2023-21646 | Hig | 0.49 | 7.5 | 0.00 | Sep 5, 2023 | Transient DOS in Modem while processing invalid System Information Block 1. | ||
| CVE-2022-40527 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM. | ||
| CVE-2022-33309 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes. | ||
| CVE-2022-33272 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS in modem due to reachable assertion. | ||
| CVE-2022-33254 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS due to reachable assertion in Modem while processing SIB1 Message. | ||
| CVE-2022-33250 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE handover. | ||
| CVE-2022-33244 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout | ||
| CVE-2022-33213 | Hig | 0.49 | 7.5 | 0.00 | Mar 10, 2023 | Memory corruption in modem due to buffer overflow while processing a PPP packet | ||
| CVE-2022-40512 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. | ||
| CVE-2022-40502 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS due to improper input validation in WLAN Host. | ||
| CVE-2022-34146 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation. | ||
| CVE-2022-34145 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS due to buffer over-read in WLAN Host while parsing frame information. |
- risk 0.51cvss 7.8epss 0.00
Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…
- risk 0.51cvss 7.8epss 0.00
Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…
- risk 0.51cvss 7.8epss 0.00
Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…
- risk 0.51cvss 7.8epss 0.00
Out of bound write can occur in playready while processing command due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music
- risk 0.50cvss 7.7epss 0.00
Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use.
- risk 0.50cvss 7.7epss 0.00
Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- risk 0.50cvss 7.7epss 0.00
APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- risk 0.49cvss 7.5epss 0.00
Transient DOS in Modem while processing RRC reconfiguration message.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in Modem while processing invalid System Information Block 1.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in modem due to reachable assertion.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to reachable assertion in Modem while processing SIB1 Message.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE handover.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout
- risk 0.49cvss 7.5epss 0.00
Memory corruption in modem due to buffer overflow while processing a PPP packet
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to improper input validation in WLAN Host.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN Host while parsing frame information.
Page 11 of 19