VYPR

Snapdragon 8\+ Gen 1 Firmware

by Qualcomm

CVEs (23)

  • CVE-2023-28581CriSep 5, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.

  • CVE-2023-22667HigJul 4, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Audio while allocating the ion buffer during the music playback.

  • CVE-2025-47348HigJan 7, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing identity credential operations in the trusted application.

  • CVE-2025-21424HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while calling the NPU driver APIs concurrently.

  • CVE-2024-53024HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in display driver while detaching a device.

  • CVE-2024-43062HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption caused by missing locks and checks on the DMA fence and improper synchronization.

  • CVE-2024-43055HigMar 3, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing camera use case IOCTL call.

  • CVE-2023-28542HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in WLAN HOST while fetching TX status information.

  • CVE-2023-28541HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.

  • CVE-2023-24854HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message.

  • CVE-2023-24851HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in WLAN HOST while parsing QMI response message from firmware.

  • CVE-2023-22386HigJul 4, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in WLAN HOST while processing WLAN FW request to allocate memory.

  • CVE-2024-33051HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.

  • CVE-2024-33050HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.

  • CVE-2023-33016HigSep 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN firmware while parsing MLO (multi-link operation).

  • CVE-2023-28584HigSep 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Host when a mobile station receives invalid channel in CSA IE while doing channel switch announcement (CSA).

  • CVE-2023-21631HigJul 4, 2023
    risk 0.49cvss 7.5epss 0.00

    Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.

  • CVE-2023-28577MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel…

  • CVE-2023-28575MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.

  • CVE-2023-21640MedJul 4, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Linux when the file upload API is called with parameters having large buffer.

Page 1 of 2