VYPR

Wcn7850 Firmware

by Qualcomm

CVEs (171)

  • CVE-2021-30259HigNov 12, 2021
    risk 0.51cvss 7.8epss 0.00

    Possible out of bound access due to improper validation of function table entries in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon…

  • CVE-2021-30255HigNov 12, 2021
    risk 0.51cvss 7.8epss 0.00

    Possible buffer overflow due to improper input validation in PDM DIAG command in FTM in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2021-1979HigNov 12, 2021
    risk 0.51cvss 7.8epss 0.00

    Possible buffer overflow due to improper validation of FTM command payload in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-1973HigNov 12, 2021
    risk 0.51cvss 7.8epss 0.00

    A FTM Diag command can allow an arbitrary write into modem OS space in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-1921HigNov 12, 2021
    risk 0.51cvss 7.8epss 0.00

    Possible memory corruption due to Improper handling of hypervisor unmap operations for concurrent memory operations in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2023-21652HigAug 8, 2023
    risk 0.50cvss 7.7epss 0.00

    Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use.

  • CVE-2022-22069HigSep 2, 2022
    risk 0.50cvss 7.7epss 0.00

    Devices with keyprotect off may store unencrypted keybox in RPMB and cause cryptographic issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2021-35116HigJun 14, 2022
    risk 0.50cvss 7.7epss 0.00

    APK can load a crafted model into the CDSP which can lead to a compromise of CDSP and other APK`s data executing there in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2023-21646HigSep 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Modem while processing invalid System Information Block 1.

  • CVE-2022-40527HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM.

  • CVE-2022-33309HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes.

  • CVE-2022-33272HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in modem due to reachable assertion.

  • CVE-2022-33254HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem while processing SIB1 Message.

  • CVE-2022-33250HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE handover.

  • CVE-2022-33244HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout

  • CVE-2022-33213HigMar 10, 2023
    risk 0.49cvss 7.5epss 0.00

    Memory corruption in modem due to buffer overflow while processing a PPP packet

  • CVE-2022-40513HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to uncontrolled resource consumption in WLAN firmware when peer is freed in non qos state.

  • CVE-2022-40512HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.

  • CVE-2022-40502HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper input validation in WLAN Host.

  • CVE-2022-34146HigFeb 12, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation.

Page 5 of 9