VYPR

Sxr2130 Firmware

by Qualcomm

CVEs (352)

  • CVE-2019-2289CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    Lack of integrity check allows MODEM to accept any NAS messages which can result into authentication bypass of NAS in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2019-2271CriNov 21, 2019
    risk 0.64cvss 9.8epss 0.01

    Buffer over read can happen while parsing downlink session management OTA messages if network sends un-intended values in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music,…

  • CVE-2023-43538CriJun 3, 2024
    risk 0.60cvss 9.3epss 0.00

    Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.

  • CVE-2023-28578CriMar 4, 2024
    risk 0.60cvss 9.3epss 0.00

    Memory corruption in Core Services while executing the command for removing a single event listener.

  • CVE-2023-33072CriFeb 6, 2024
    risk 0.60cvss 9.3epss 0.00

    Memory corruption in Core while processing control functions.

  • CVE-2023-33030CriJan 2, 2024
    risk 0.60cvss 9.3epss 0.00

    Memory corruption in HLOS while running playready use-case.

  • CVE-2023-33054CriDec 5, 2023
    risk 0.59cvss 9.1epss 0.00

    Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.

  • CVE-2023-28540CriOct 3, 2023
    risk 0.59cvss 9.1epss 0.00

    Cryptographic issue in Data Modem due to improper authentication during TLS handshake.

  • CVE-2019-10622CriApr 16, 2020
    risk 0.59cvss 9.1epss 0.01

    Out of bound memory access can happen while parsing ADSP message due to lack of check of size of payload received from userspace in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2019-14063CriFeb 7, 2020
    risk 0.59cvss 9.1epss 0.01

    Out of bound access due to Invalid inputs to dapm mux settings which results into kernel failure in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and…

  • CVE-2019-10579CriJan 21, 2020
    risk 0.59cvss 9.1epss 0.01

    Buffer over-read can occur while playing the video clip which is not standard in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in…

  • CVE-2023-21673HigOct 3, 2023
    risk 0.57cvss 8.7epss 0.00

    Improper Access to the VM resource manager can lead to Memory Corruption.

  • CVE-2024-33056HigDec 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition continuously.

  • CVE-2024-33035HigSep 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while calculating total metadata size when a very high reserved size is requested by gralloc clients.

  • CVE-2024-23373HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.

  • CVE-2023-43531HigMay 6, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while verifying the serialized header when the key pairs are generated.

  • CVE-2024-21468HigApr 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when there is failed unmap operation in GPU.

  • CVE-2023-33066HigMar 4, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Audio while processing RT proxy port register driver.

  • CVE-2023-33094HigJan 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while running VK synchronization with KASAN enabled.

  • CVE-2023-33033HigJan 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Audio during playback with speaker protection.

Page 3 of 18