VYPR

Qca4010 Firmware

by Qualcomm

CVEs (11)

  • CVE-2020-11269HigFeb 22, 2021
    risk 0.57cvss 8.8epss 0.00

    Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-30288HigOct 20, 2021
    risk 0.55cvss 8.4epss 0.00

    Possible stack overflow due to improper length check of TLV while copying the TLV to a local stack variable in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2023-21625HigAug 8, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Network Services due to buffer over-read while the device receives DNS response.

  • CVE-2022-33291HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length.

  • CVE-2022-33287HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet.

  • CVE-2022-25730HigApr 13, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure in modem due to improper check of IP type while processing DNS server query

  • CVE-2023-28565HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while handling command streams through WMI interfaces.

  • CVE-2023-28560HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.

  • CVE-2023-28559HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.

  • CVE-2019-14135HigApr 16, 2020
    risk 0.51cvss 7.8epss 0.00

    Possible integer overflow to buffer overflow in WLAN while parsing nonstandard NAN IE messages. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2023-28563MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in IOE Firmware while handling WMI command.