VYPR

Sm6370 Firmware

by Qualcomm

CVEs (72)

  • CVE-2025-21483CriSep 24, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption when the UE receives an RTP packet from the network, during the reassembly of NALUs.

  • CVE-2025-21450CriJul 8, 2025
    risk 0.59cvss 9.1epss 0.00

    Cryptographic issue occurs due to use of insecure connection method while downloading.

  • CVE-2024-33056HigDec 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition continuously.

  • CVE-2024-33060HigSep 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when two threads try to map and unmap a single node simultaneously.

  • CVE-2024-33045HigSep 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when BTFM client sends new messages over Slimbus to ADSP.

  • CVE-2024-33035HigSep 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while calculating total metadata size when a very high reserved size is requested by gralloc clients.

  • CVE-2024-33023HigAug 5, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.

  • CVE-2024-23373HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.

  • CVE-2024-21461HigJul 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while performing finish HMAC operation when context is freed by keymaster.

  • CVE-2024-21471HigMay 6, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.

  • CVE-2024-21468HigApr 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when there is failed unmap operation in GPU.

  • CVE-2023-33023HigApr 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while processing finish_sign command to pass a rsp buffer.

  • CVE-2023-28547HigApr 1, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in SPS Application while requesting for public key in sorter TA.

  • CVE-2025-21488HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.

  • CVE-2025-21487HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.

  • CVE-2025-21484HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.

  • CVE-2025-21427HigJul 8, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.

  • CVE-2024-53026HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.

  • CVE-2024-53021HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while processing goodbye RTCP packet from network.

  • CVE-2024-53020HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while decoding the RTP packet with invalid header extension from network.

Page 1 of 4