VYPR

Snapdragon 675 Mobile Platform Firmware

by Qualcomm

CVEs (108)

  • CVE-2023-33022HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in HLOS while invoking IOCTL calls from user-space.

  • CVE-2023-24852HigNov 7, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Core due to secure memory access by user while loading modem image.

  • CVE-2022-33275HigSep 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.

  • CVE-2023-21628HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.

  • CVE-2022-40507HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.01

    Memory corruption due to double free in Core while mapping HLOS address to the list.

  • CVE-2022-33307HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.

  • CVE-2025-21487HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.

  • CVE-2025-21484HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.

  • CVE-2024-53026HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.

  • CVE-2024-53021HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while processing goodbye RTCP packet from network.

  • CVE-2024-53020HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while decoding the RTP packet with invalid header extension from network.

  • CVE-2023-28585HigDec 5, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption while loading an ELF segment in TEE Kernel.

  • CVE-2023-28545HigNov 7, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption in TZ Secure OS while loading an app ELF.

  • CVE-2023-24849HigOct 3, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in data Modem while parsing an FMTP line in an SDP message.

  • CVE-2023-24848HigOct 3, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.

  • CVE-2023-22385HigOct 3, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory Corruption in Data Modem while making a MO call or MT VOLTE call.

  • CVE-2023-21669HigJun 6, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in WLAN HOST while sending DPP action frame to peer with an invalid source address.

  • CVE-2025-27054HigOct 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing a malformed license file during reboot.

  • CVE-2025-27053HigOct 9, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during PlayReady APP usecase while processing TA commands.

  • CVE-2025-27032HigSep 24, 2025
    risk 0.51cvss 7.8epss 0.00

    memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.

Page 2 of 6