VYPR

Snapdragon 855\+ Mobile Platform Firmware

by Qualcomm

CVEs (112)

  • CVE-2024-38422HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing voice packet with arbitrary data received from ADSP.

  • CVE-2024-23356HigAug 5, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during session sign renewal request calls in HLOS.

  • CVE-2024-23368HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition.

  • CVE-2024-21465HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing key blob passed by the user.

  • CVE-2023-43513HigFeb 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

  • CVE-2023-33120HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio when memory map command is executed consecutively in ADSP.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-28587HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.

  • CVE-2023-28551HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

  • CVE-2023-28550HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in MPP performance while accessing DSM watermark using external memory address.

  • CVE-2023-28546HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in SPS Application while exporting public key in sorter TA.

  • CVE-2023-24850HigOct 3, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in HLOS while importing a cryptographic key into KeyMaster Trusted Application.

  • CVE-2023-28559HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.

  • CVE-2023-28558HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN handler while processing PhyID in Tx status handler.

  • CVE-2023-28557HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.

  • CVE-2023-28544HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers.

  • CVE-2025-27066HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing an ANQP message.

  • CVE-2025-21452HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing a random-access response (RAR) with an invalid PDU length on LTE network.

  • CVE-2025-21430HigApr 7, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while connecting STA to AP and initiating ADD TS request from AP to establish TSpec session.

  • CVE-2025-21429HigApr 7, 2025
    risk 0.49cvss 7.5epss 0.00

    Memory corruption occurs while connecting a STA to an AP and initiating an ADD TS request.

Page 3 of 6