VYPR

Mdm9206 Firmware

by Qualcomm

CVEs (680)

  • CVE-2022-22085HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in video due to buffer overflow while reading the dts file in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2022-22084HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when extracting qcp audio file due to lack of check on data length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2022-22082HigJun 14, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to possible buffer overflow while parsing DSF header with corrupted channel count in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2021-30318HigFeb 11, 2022
    risk 0.55cvss 8.4epss 0.00

    Improper validation of input when provisioning the HDCP key can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30337HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible use after free when process shell memory is freed using IOCTL call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,…

  • CVE-2021-1949HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible integer overflow due to improper check of batch count value while sanitizer is enabled in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30261HigSep 17, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible integer and heap overflow due to lack of input command size validation while handling beacon template update command from HLOS in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2021-30260HigSep 17, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible Integer overflow to buffer overflow issue can occur due to improper validation of input parameters when extscan hostlist configuration command is received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2021-1900HigJun 9, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible use after free in Display due to race condition while creating an external display in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2020-11234HigApr 7, 2021
    risk 0.55cvss 8.4epss 0.00

    When sending a socket event message to a user application, invalid information will be passed if socket is freed by other thread resulting in a Use After Free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2018-5884HigJul 6, 2018
    risk 0.55cvss 8.4epss 0.00

    Improper Access Control in Multimedia in Snapdragon Mobile and Snapdragon Wear, Non-standard applications without permission may acquire permission of Qualcomm-specific proprietary intents.

  • CVE-2022-33295HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while parsing the wms message received given the buffer and its length.

  • CVE-2022-33258HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in modem while reading configuration parameters.

  • CVE-2022-33228HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure sue to buffer over-read in modem while processing ipv6 packet with hop-by-hop or destination option in header.

  • CVE-2022-33222HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read while parsing DNS response packets in Modem.

  • CVE-2022-25747HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to improper input validation during parsing of upcoming CoAP message

  • CVE-2022-25730HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to improper check of IP type while processing DNS server query

  • CVE-2022-25726HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet

  • CVE-2022-33229HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets.

  • CVE-2022-25738HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to buffer over-red while performing checksum of packet received

Page 15 of 34