Sc8180x AD Firmware
by Qualcomm
CVEs (41)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-43538 | Cri | 0.60 | 9.3 | 0.00 | Jun 3, 2024 | Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization. | ||
| CVE-2023-28578 | Cri | 0.60 | 9.3 | 0.00 | Mar 4, 2024 | Memory corruption in Core Services while executing the command for removing a single event listener. | ||
| CVE-2023-21673 | Hig | 0.57 | 8.7 | 0.00 | Oct 3, 2023 | Improper Access to the VM resource manager can lead to Memory Corruption. | ||
| CVE-2023-43554 | Hig | 0.55 | 8.4 | 0.00 | Jul 1, 2024 | Memory corruption while processing IOCTL handler in FastRPC. | ||
| CVE-2023-43541 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption while invoking the SubmitCommands call on Gfx engine during the graphics render. | ||
| CVE-2023-33066 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption in Audio while processing RT proxy port register driver. | ||
| CVE-2023-33022 | Hig | 0.55 | 8.4 | 0.00 | Dec 5, 2023 | Memory corruption in HLOS while invoking IOCTL calls from user-space. | ||
| CVE-2023-24849 | Hig | 0.53 | 8.2 | 0.00 | Oct 3, 2023 | Information Disclosure in data Modem while parsing an FMTP line in an SDP message. | ||
| CVE-2023-24848 | Hig | 0.53 | 8.2 | 0.00 | Oct 3, 2023 | Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value. | ||
| CVE-2023-22385 | Hig | 0.53 | 8.2 | 0.00 | Oct 3, 2023 | Memory Corruption in Data Modem while making a MO call or MT VOLTE call. | ||
| CVE-2025-47359 | Hig | 0.51 | 7.8 | 0.00 | Feb 2, 2026 | Memory Corruption when multiple threads simultaneously access a memory free API. | ||
| CVE-2025-27055 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Memory corruption during the image encoding process. | ||
| CVE-2025-27046 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Memory corruption while processing multiple simultaneous escape calls. | ||
| CVE-2025-21466 | Hig | 0.51 | 7.8 | 0.00 | Jul 8, 2025 | Memory corruption while processing a private escape command in an event trigger. | ||
| CVE-2025-21475 | Hig | 0.51 | 7.8 | 0.00 | May 6, 2025 | Memory corruption while processing escape code, when DisplayId is passed with large unsigned value. | ||
| CVE-2025-21470 | Hig | 0.51 | 7.8 | 0.00 | May 6, 2025 | Memory corruption while processing image encoding, when configuration is NULL in IOCTL parameter. | ||
| CVE-2024-49842 | Hig | 0.51 | 7.8 | 0.00 | May 6, 2025 | Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions. | ||
| CVE-2024-45561 | Hig | 0.51 | 7.8 | 0.00 | Feb 3, 2025 | Memory corruption while handling IOCTL call from user-space to set latency level. | ||
| CVE-2024-45542 | Hig | 0.51 | 7.8 | 0.00 | Jan 6, 2025 | Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. | ||
| CVE-2023-43542 | Hig | 0.51 | 7.8 | 0.00 | Jun 3, 2024 | Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked. |
- risk 0.60cvss 9.3epss 0.00
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
- risk 0.60cvss 9.3epss 0.00
Memory corruption in Core Services while executing the command for removing a single event listener.
- risk 0.57cvss 8.7epss 0.00
Improper Access to the VM resource manager can lead to Memory Corruption.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while processing IOCTL handler in FastRPC.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while invoking the SubmitCommands call on Gfx engine during the graphics render.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Audio while processing RT proxy port register driver.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in HLOS while invoking IOCTL calls from user-space.
- risk 0.53cvss 8.2epss 0.00
Information Disclosure in data Modem while parsing an FMTP line in an SDP message.
- risk 0.53cvss 8.2epss 0.00
Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.
- risk 0.53cvss 8.2epss 0.00
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
- risk 0.51cvss 7.8epss 0.00
Memory Corruption when multiple threads simultaneously access a memory free API.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during the image encoding process.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing multiple simultaneous escape calls.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing a private escape command in an event trigger.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing image encoding, when configuration is NULL in IOCTL parameter.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling IOCTL call from user-space to set latency level.
- risk 0.51cvss 7.8epss 0.00
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.
Page 1 of 3