Sa8650p Firmware
by Qualcomm
CVEs (139)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-21465 | Med | 0.42 | 6.5 | 0.00 | Aug 6, 2025 | Information disclosure while processing the hash segment in an MBN file. | ||
| CVE-2025-21464 | Med | 0.42 | 6.5 | 0.00 | Aug 6, 2025 | Information disclosure while reading data from an image using specified offset and size parameters. | ||
| CVE-2024-21467 | Med | 0.42 | 6.5 | 0.00 | Aug 5, 2024 | Information disclosure while handling beacon probe frame during scan entry generation in client side. | ||
| CVE-2024-21466 | Med | 0.42 | 6.5 | 0.00 | Jul 1, 2024 | Information disclosure while parsing sub-IE length during new IE generation. | ||
| CVE-2024-21458 | Med | 0.42 | 6.5 | 0.00 | Jul 1, 2024 | Information disclosure while handling SA query action frame. | ||
| CVE-2024-21457 | Med | 0.42 | 6.5 | 0.00 | Jul 1, 2024 | INformation disclosure while handling Multi-link IE in beacon frame. | ||
| CVE-2024-21456 | Med | 0.42 | 6.5 | 0.00 | Jul 1, 2024 | Information Disclosure while parsing beacon frame in STA. | ||
| CVE-2025-47362 | Med | 0.40 | 6.1 | 0.00 | Nov 4, 2025 | Information disclosure while processing message from client with invalid payload. | ||
| CVE-2025-27064 | Med | 0.40 | 6.1 | 0.00 | Nov 4, 2025 | Information disclosure while registering commands from clients with diag through diagHal. | ||
| CVE-2025-21433 | Med | 0.40 | 6.2 | 0.00 | Jul 8, 2025 | Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus. | ||
| CVE-2024-45551 | Med | 0.40 | 6.2 | 0.00 | Apr 7, 2025 | Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass. | ||
| CVE-2024-21478 | Med | 0.40 | 6.2 | 0.00 | Jun 3, 2024 | transient DOS when setting up a fence callback to free a KGSL memory entry object during DMA. | ||
| CVE-2023-43530 | Med | 0.38 | 5.9 | 0.00 | May 6, 2024 | Memory corruption in HLOS while checking for the storage type. | ||
| CVE-2023-33076 | Med | 0.38 | 5.9 | 0.00 | Feb 6, 2024 | Memory corruption in Core when updating rollback version for TA and OTA feature is enabled. | ||
| CVE-2024-43046 | Med | 0.36 | 5.5 | 0.00 | Apr 7, 2025 | There may be information disclosure during memory re-allocation in TZ Secure OS. | ||
| CVE-2023-33111 | Med | 0.36 | 5.5 | 0.00 | Apr 1, 2024 | Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command. | ||
| CVE-2023-33090 | Med | 0.36 | 5.5 | 0.00 | Mar 4, 2024 | Transient DOS while processing channel information for speaker protection v2 module in ADSP. | ||
| CVE-2023-33064 | Med | 0.36 | 5.5 | 0.00 | Feb 6, 2024 | Transient DOS in Audio when invoking callback function of ASM driver. | ||
| CVE-2024-53009 | Med | 0.34 | 5.3 | 0.00 | Jul 8, 2025 | Memory corruption while operating the mailbox in Automotive. |
- risk 0.42cvss 6.5epss 0.00
Information disclosure while processing the hash segment in an MBN file.
- risk 0.42cvss 6.5epss 0.00
Information disclosure while reading data from an image using specified offset and size parameters.
- risk 0.42cvss 6.5epss 0.00
Information disclosure while handling beacon probe frame during scan entry generation in client side.
- risk 0.42cvss 6.5epss 0.00
Information disclosure while parsing sub-IE length during new IE generation.
- risk 0.42cvss 6.5epss 0.00
Information disclosure while handling SA query action frame.
- risk 0.42cvss 6.5epss 0.00
INformation disclosure while handling Multi-link IE in beacon frame.
- risk 0.42cvss 6.5epss 0.00
Information Disclosure while parsing beacon frame in STA.
- risk 0.40cvss 6.1epss 0.00
Information disclosure while processing message from client with invalid payload.
- risk 0.40cvss 6.1epss 0.00
Information disclosure while registering commands from clients with diag through diagHal.
- risk 0.40cvss 6.2epss 0.00
Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.
- risk 0.40cvss 6.2epss 0.00
Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass.
- risk 0.40cvss 6.2epss 0.00
transient DOS when setting up a fence callback to free a KGSL memory entry object during DMA.
- risk 0.38cvss 5.9epss 0.00
Memory corruption in HLOS while checking for the storage type.
- risk 0.38cvss 5.9epss 0.00
Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.
- risk 0.36cvss 5.5epss 0.00
There may be information disclosure during memory re-allocation in TZ Secure OS.
- risk 0.36cvss 5.5epss 0.00
Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command.
- risk 0.36cvss 5.5epss 0.00
Transient DOS while processing channel information for speaker protection v2 module in ADSP.
- risk 0.36cvss 5.5epss 0.00
Transient DOS in Audio when invoking callback function of ASM driver.
- risk 0.34cvss 5.3epss 0.00
Memory corruption while operating the mailbox in Automotive.
Page 7 of 7