VYPR

Sm8350 Firmware

by Qualcomm

CVEs (30)

  • CVE-2020-3639CriNov 12, 2020
    risk 0.64cvss 9.8epss 0.01

    u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cycle or memory overflow' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in…

  • CVE-2020-11193CriNov 12, 2020
    risk 0.64cvss 9.8epss 0.01

    u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in…

  • CVE-2020-11184CriNov 12, 2020
    risk 0.64cvss 9.8epss 0.01

    u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QCS4290, QM215, QSM8350, SA6145P, SA6155, SA6155P, SA8155, SA8155P, SDX55, SDX55M,…

  • CVE-2023-33054CriDec 5, 2023
    risk 0.59cvss 9.1epss 0.00

    Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.

  • CVE-2023-28540CriOct 3, 2023
    risk 0.59cvss 9.1epss 0.00

    Cryptographic issue in Data Modem due to improper authentication during TLS handshake.

  • CVE-2023-33022HigDec 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in HLOS while invoking IOCTL calls from user-space.

  • CVE-2023-33079HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio while running invalid audio recording from ADSP.

  • CVE-2023-33018HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while using the UIM diag command to get the operators name.

  • CVE-2023-33017HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.

  • CVE-2023-33055HigNov 7, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in Audio while invoking callback function in driver from ADSP.

  • CVE-2023-33035HigOct 3, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while invoking callback function of AFE from ADSP.

  • CVE-2023-33034HigOct 3, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while parsing the ADSP response command.

  • CVE-2023-21656HigJun 6, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HOST while receiving an WMI event from firmware.

  • CVE-2022-25713HigMay 2, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exporting a shared key.

  • CVE-2020-3632HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snapdragon Mobile in QSM8350, SC7180, SDX55, SDX55M, SM6150, SM6250, SM6250P, SM7125, SM7150, SM7150P, SM7250, SM7250P, SM8150, SM8150P, SM8250, SM8350, SM8350P,…

  • CVE-2020-11206HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.02

    Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in APQ8098, MSM8998, QCM4290, QCM6125, QCS410,…

  • CVE-2020-11205HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile in QSM8350, SA6145P, SA6150P, SA6155, SA6155P, SA8150P, SA8155P, SA8195P, SDX55M, SM8250, SM8350,…

  • CVE-2020-11130HigNov 12, 2020
    risk 0.51cvss 7.8epss 0.00

    u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile in QCM4290, QCS4290, QM215, QSM8350, SA6145P, SA6155, SA6155P, SA8155, SA8155P, SC8180X,…

  • CVE-2023-33043HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.01

    Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.

  • CVE-2023-33047HigNov 7, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware while parsing no-inherit IES.

Page 1 of 2