VYPR

Sm6375 Firmware

by Qualcomm

CVEs (132)

  • CVE-2022-40536HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.

  • CVE-2022-40521HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper authorization in Modem

  • CVE-2022-33251HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem because of invalid network configuration.

  • CVE-2022-22060HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Assertion occurs while processing Reconfiguration message due to improper validation

  • CVE-2022-40504HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.

  • CVE-2022-40508HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported.

  • CVE-2022-34144HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem during OSI decode scheduling.

  • CVE-2022-33305HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH.

  • CVE-2022-33270HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message.

  • CVE-2021-35100HigJun 14, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible buffer over read due to improper calculation of string length while parsing Id3 tag in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30344HigJun 14, 2022
    risk 0.49cvss 7.5epss 0.01

    Improper authorization of a replayed LTE security mode command can lead to a denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30340HigJun 14, 2022
    risk 0.49cvss 7.5epss 0.01

    Reachable assertion due to improper validation of coreset in PDCCH configuration in SA mode in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30332HigApr 1, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible assertion due to improper validation of OTA configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30329HigApr 1, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible assertion due to improper validation of TCI configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30328HigApr 1, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible assertion due to improper validation of invalid NR CSI-IM resource configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30326HigFeb 11, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible assertion due to improper size validation while processing the DownlinkPreemption IE in an RRC Reconfiguration/RRC Setup message in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-30353HigJan 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Improper validation of function pointer type with actual function signature can lead to assertion in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30330HigJan 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible null pointer dereference due to improper validation of APE clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables

  • CVE-2021-30307HigJan 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible denial of service due to improper validation of DNS response when DNS client requests with PTR, NAPTR or SRV query type in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT

  • CVE-2021-30301HigJan 13, 2022
    risk 0.49cvss 7.5epss 0.01

    Possible denial of service due to out of memory while processing RRC and NAS OTA message in Snapdragon Auto, Snapdragon Industrial IOT, Snapdragon Mobile

Page 5 of 7