215 Firmware
by Qualcomm
CVEs (10)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-22667 | Hig | 0.55 | 8.4 | 0.00 | Jul 4, 2023 | Memory Corruption in Audio while allocating the ion buffer during the music playback. | ||
| CVE-2025-21424 | Hig | 0.51 | 7.8 | 0.00 | Mar 3, 2025 | Memory corruption while calling the NPU driver APIs concurrently. | ||
| CVE-2023-24854 | Hig | 0.51 | 7.8 | 0.00 | Jul 4, 2023 | Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message. | ||
| CVE-2023-22386 | Hig | 0.51 | 7.8 | 0.00 | Jul 4, 2023 | Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory. | ||
| CVE-2019-2248 | Hig | 0.51 | 7.8 | 0.00 | May 24, 2019 | Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice &… | ||
| CVE-2023-33020 | Hig | 0.49 | 7.5 | 0.00 | Sep 5, 2023 | Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE. | ||
| CVE-2023-33019 | Hig | 0.49 | 7.5 | 0.00 | Sep 5, 2023 | Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE. | ||
| CVE-2023-21631 | Hig | 0.49 | 7.5 | 0.00 | Jul 4, 2023 | Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network. | ||
| CVE-2023-28575 | Med | 0.44 | 6.7 | 0.00 | Aug 8, 2023 | The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it. | ||
| CVE-2023-21629 | Med | 0.44 | 6.8 | 0.00 | Jul 4, 2023 | Memory Corruption in Modem due to double free while parsing the PKCS15 sim files. |
- risk 0.55cvss 8.4epss 0.00
Memory Corruption in Audio while allocating the ion buffer during the music playback.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while calling the NPU driver APIs concurrently.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory.
- risk 0.51cvss 7.8epss 0.00
Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice &…
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE.
- risk 0.49cvss 7.5epss 0.00
Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE.
- risk 0.49cvss 7.5epss 0.00
Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.
- risk 0.44cvss 6.7epss 0.00
The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
- risk 0.44cvss 6.8epss 0.00
Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.