VYPR

Qsm8250 Firmware

by Qualcomm

CVEs (133)

  • CVE-2023-33033HigJan 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Audio during playback with speaker protection.

  • CVE-2023-33088HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when processing cmd parameters while parsing vdev.

  • CVE-2023-33022HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in HLOS while invoking IOCTL calls from user-space.

  • CVE-2023-24852HigNov 7, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Core due to secure memory access by user while loading modem image.

  • CVE-2023-28538HigSep 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WIN Product while invoking WinAcpi update driver in the UEFI region.

  • CVE-2023-22666HigAug 8, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Audio while playing amrwbplus clips with modified content.

  • CVE-2023-22667HigJul 4, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Audio while allocating the ion buffer during the music playback.

  • CVE-2022-40531HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.

  • CVE-2022-33277HigFeb 12, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.

  • CVE-2022-40520HigJan 9, 2023
    risk 0.55cvss 8.4epss 0.01

    Memory corruption due to stack-based buffer overflow in Core

  • CVE-2022-25724HigNov 15, 2022
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in graphics due to buffer overflow while validating the user address in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30337HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible use after free when process shell memory is freed using IOCTL call and process initialization is in progress in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,…

  • CVE-2021-30335HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible assertion in QOS request due to improper validation when multiple add or update request are received simultaneously in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2021-30282HigJan 3, 2022
    risk 0.55cvss 8.4epss 0.00

    Possible out of bound write in RAM partition table due to improper validation on number of partitions provided in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired…

  • CVE-2021-1949HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible integer overflow due to improper check of batch count value while sanitizer is enabled in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-1890HigJul 13, 2021
    risk 0.55cvss 8.4epss 0.00

    Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-1888HigJul 13, 2021
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-1886HigJul 13, 2021
    risk 0.55cvss 8.4epss 0.00

    Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon…

  • CVE-2021-1927HigMay 7, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables,…

  • CVE-2020-11245HigApr 7, 2021
    risk 0.55cvss 8.4epss 0.00

    Unintended reads and writes by NS EL2 in access control driver due to lack of check of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and…

Page 2 of 7