VYPR

Sm8150 Firmware

by Qualcomm

CVEs (348)

  • CVE-2019-10566HigNov 21, 2019
    risk 0.51cvss 7.8epss 0.00

    Buffer overflow can occur in wlan module if supported rates or extended rates element length is greater than max rate set length in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2018-13916HigNov 21, 2019
    risk 0.51cvss 7.8epss 0.00

    Out-of-bounds memory access in Qurt kernel function when using the identifier to access Qurt kernel buffer to retrieve thread data. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon…

  • CVE-2023-33080HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.

  • CVE-2023-33027HigOct 3, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware while parsing rsn ies.

  • CVE-2023-21659HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware while processing frames with missing header fields.

  • CVE-2022-40536HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.

  • CVE-2022-40521HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper authorization in Modem

  • CVE-2022-33251HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem because of invalid network configuration.

  • CVE-2022-22060HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Assertion occurs while processing Reconfiguration message due to improper validation

  • CVE-2022-40504HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.

  • CVE-2022-40508HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported.

  • CVE-2021-30327HigJun 14, 2022
    risk 0.49cvss 7.5epss 0.00

    Buffer overflow in sahara protocol while processing commands leads to overwrite of secure configuration data in Snapdragon Mobile, Snapdragon Compute, Snapdragon Auto, Snapdragon IOT, Snapdragon Connectivity, Snapdragon Voice & Music

  • CVE-2020-3704HigNov 2, 2020
    risk 0.49cvss 7.5epss 0.01

    u'While processing invalid connection request PDU which is nonstandard (interval or timeout is 0) from central device may lead peripheral system enter into dead lock state.(This CVE is equivalent to InvalidConnectionRequest(CVE-2019-19193) mentioned in sweyntooth paper)' in…

  • CVE-2020-11135HigSep 9, 2020
    risk 0.49cvss 7.5epss 0.01

    u'Reachable assertion when wrong data size is returned by parser for ape clips' in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8098, Kamorta, MSM8917, MSM8953, Nicobar, QCM2150, QCS605, QM215, Rennell, SA6155P, SA8155P, Saipan,…

  • CVE-2020-11118HigSep 8, 2020
    risk 0.49cvss 7.5epss 0.01

    u'Information exposure issues while processing IE header due to improper check of beacon IE frame' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11115HigSep 8, 2020
    risk 0.49cvss 7.5epss 0.01

    u'Buffer over read occurs while processing information element from beacon due to lack of check of data received from beacon' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2020-3700HigJul 30, 2020
    risk 0.49cvss 7.5epss 0.01

    Possible out of bounds read due to a missing bounds check and could lead to local information disclosure in the wifi driver with no additional execution privileges needed in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile,…

  • CVE-2020-3645HigJun 2, 2020
    risk 0.49cvss 7.5epss 0.01

    Firmware will hit assert in WLAN firmware If encrypted data length in FILS IE of reassoc response is more than 528 bytes in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2020-3651HigApr 16, 2020
    risk 0.49cvss 7.5epss 0.01

    Active command timeout since WM status change cmd is not removed from active queue if peer sends multiple deauth frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2019-14022HigApr 16, 2020
    risk 0.49cvss 7.5epss 0.01

    Error occurs While extracting the ipv6_header having an invalid length due to lack of length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8096AU, MDM9205, MDM9206, MDM9607,…

Page 14 of 18