Wcn785x 5 Firmware
by Qualcomm
CVEs (83)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-40532 | Hig | 0.55 | 8.4 | 0.00 | Apr 13, 2023 | Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. | ||
| CVE-2022-40503 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming. | ||
| CVE-2022-33291 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length. | ||
| CVE-2022-33287 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet. | ||
| CVE-2022-25730 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in modem due to improper check of IP type while processing DNS server query | ||
| CVE-2022-25726 | Hig | 0.53 | 8.2 | 0.00 | Apr 13, 2023 | Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet | ||
| CVE-2023-33087 | Hig | 0.51 | 7.8 | 0.00 | Dec 5, 2023 | Memory corruption in Core while processing RX intent request. | ||
| CVE-2023-33079 | Hig | 0.51 | 7.8 | 0.00 | Dec 5, 2023 | Memory corruption in Audio while running invalid audio recording from ADSP. | ||
| CVE-2023-33018 | Hig | 0.51 | 7.8 | 0.00 | Dec 5, 2023 | Memory corruption while using the UIM diag command to get the operators name. | ||
| CVE-2023-33017 | Hig | 0.51 | 7.8 | 0.00 | Dec 5, 2023 | Memory corruption in Boot while running a ListVars test in UEFI Menu during boot. | ||
| CVE-2023-33059 | Hig | 0.51 | 7.8 | 0.00 | Nov 7, 2023 | Memory corruption in Audio while processing the VOC packet data from ADSP. | ||
| CVE-2023-33055 | Hig | 0.51 | 7.8 | 0.00 | Nov 7, 2023 | Memory Corruption in Audio while invoking callback function in driver from ADSP. | ||
| CVE-2023-33031 | Hig | 0.51 | 7.8 | 0.00 | Nov 7, 2023 | Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer. | ||
| CVE-2023-33035 | Hig | 0.51 | 7.8 | 0.00 | Oct 3, 2023 | Memory corruption while invoking callback function of AFE from ADSP. | ||
| CVE-2023-28560 | Hig | 0.51 | 7.8 | 0.00 | Sep 5, 2023 | Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload. | ||
| CVE-2023-21670 | Hig | 0.51 | 7.8 | 0.00 | Jun 6, 2023 | Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode. | ||
| CVE-2023-21657 | Hig | 0.51 | 7.8 | 0.00 | Jun 6, 2023 | Memoru corruption in Audio when ADSP sends input during record use case. | ||
| CVE-2023-21656 | Hig | 0.51 | 7.8 | 0.00 | Jun 6, 2023 | Memory corruption in WLAN HOST while receiving an WMI event from firmware. | ||
| CVE-2022-33264 | Hig | 0.51 | 7.9 | 0.00 | Jun 6, 2023 | Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. | ||
| CVE-2023-33081 | Hig | 0.49 | 7.5 | 0.00 | Dec 5, 2023 | Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast. |
- risk 0.55cvss 8.4epss 0.00
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
- risk 0.53cvss 8.2epss 0.00
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.
- risk 0.53cvss 8.2epss 0.00
Information disclosure in modem due to improper check of IP type while processing DNS server query
- risk 0.53cvss 8.2epss 0.00
Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet
- risk 0.51cvss 7.8epss 0.00
Memory corruption in Core while processing RX intent request.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in Audio while running invalid audio recording from ADSP.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while using the UIM diag command to get the operators name.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in Audio while processing the VOC packet data from ADSP.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption in Audio while invoking callback function in driver from ADSP.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while invoking callback function of AFE from ADSP.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.
- risk 0.51cvss 7.8epss 0.00
Memoru corruption in Audio when ADSP sends input during record use case.
- risk 0.51cvss 7.8epss 0.00
Memory corruption in WLAN HOST while receiving an WMI event from firmware.
- risk 0.51cvss 7.9epss 0.00
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
- risk 0.49cvss 7.5epss 0.00
Transient DOS while converting TWT (Target Wake Time) frame parameters in the OTA broadcast.
Page 2 of 5