VYPR

Sm6350 Firmware

by Qualcomm

CVEs (54)

  • CVE-2023-33055HigNov 7, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in Audio while invoking callback function in driver from ADSP.

  • CVE-2023-33031HigNov 7, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.

  • CVE-2023-33035HigOct 3, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while invoking callback function of AFE from ADSP.

  • CVE-2023-28560HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.

  • CVE-2023-21657HigJun 6, 2023
    risk 0.51cvss 7.8epss 0.00

    Memoru corruption in Audio when ADSP sends input during record use case.

  • CVE-2022-33264HigJun 6, 2023
    risk 0.51cvss 7.9epss 0.00

    Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.

  • CVE-2020-11207HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.01

    Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8052, APQ8056, APQ8076, APQ8096, APQ8096SG, APQ8098, MDM9655,…

  • CVE-2020-11206HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.02

    Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8098, MSM8998, QCM4290, QCM6125, QCS410,…

  • CVE-2020-11175HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due to improper timer handling.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2020-11130HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QCS4290, QM215, QSM8350, SA6145P, SA6155, SA6155P, SA8155, SA8155P, SC8180X,…

  • CVE-2020-11127HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during the validation of security metadata while processing objects to be loaded' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2020-11121HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QCS4290, QM215, QSM8350, SA6145P, SA6155, SA6155P, SA8155,…

  • CVE-2023-33080HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.

  • CVE-2023-33044HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.01

    Transient DOS in Data modem while handling TLB control messages from the Network.

  • CVE-2023-33042HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.01

    Transient DOS in Modem after RRC Setup message is received.

  • CVE-2023-33027HigOct 3, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware while parsing rsn ies.

  • CVE-2023-21659HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware while processing frames with missing header fields.

  • CVE-2022-40536HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.

  • CVE-2022-40521HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper authorization in Modem

  • CVE-2022-33251HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem because of invalid network configuration.