VYPR

Qcm4290 Firmware

by Qualcomm

CVEs (289)

  • CVE-2020-11247HigApr 7, 2021
    risk 0.53cvss 8.2epss 0.01

    Out of bound memory read while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2020-11191HigApr 7, 2021
    risk 0.53cvss 8.2epss 0.01

    Out of bound read occurs while processing crafted SDP due to lack of check of null string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2021-1906MedKEVMay 7, 2021
    risk 0.52cvss 6.2epss 0.01

    Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2025-27054HigOct 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing a malformed license file during reboot.

  • CVE-2025-27053HigOct 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during PlayReady APP usecase while processing TA commands.

  • CVE-2025-21481HigSep 24, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while performing private key encryption in trusted application.

  • CVE-2025-27042HigJul 8, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing video packets received from video firmware.

  • CVE-2025-21432HigJul 8, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while retrieving the CBOR data from TA.

  • CVE-2025-21453HigMay 6, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing a data structure, when an iterator is accessed after it has been removed, potential failures occur.

  • CVE-2025-21424HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while calling the NPU driver APIs concurrently.

  • CVE-2024-33052HigSep 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when user provides data for FM HCI command control operations.

  • CVE-2023-43542HigJun 3, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.

  • CVE-2024-21475HigMay 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when the payload received from firmware is not as per the expected protocol size.

  • CVE-2023-33120HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio when memory map command is executed consecutively in ADSP.

  • CVE-2023-33118HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.

  • CVE-2023-33117HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.

  • CVE-2023-33079HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio while running invalid audio recording from ADSP.

  • CVE-2023-33018HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while using the UIM diag command to get the operators name.

  • CVE-2023-33017HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.

  • CVE-2023-28587HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.

Page 7 of 15