VYPR

Sa415m Firmware

by Qualcomm

CVEs (295)

  • CVE-2020-11237HigApr 7, 2021
    risk 0.55cvss 8.4epss 0.00

    Memory crash when accessing histogram type KPI input received due to lack of check of histogram definition before accessing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2020-11236HigApr 7, 2021
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to invalid value of total dimension in the non-histogram type KPI could lead to a denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile

  • CVE-2022-33271HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while parsing NMF frame.

  • CVE-2022-33252HigJan 9, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while handling IBSS beacons frame.

  • CVE-2022-33235HigDec 13, 2022
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2022-22062HigSep 2, 2022
    risk 0.53cvss 8.2epss 0.00

    An out-of-bounds read can occur while parsing a server certificate due to improper length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT,…

  • CVE-2021-35083HigJun 14, 2022
    risk 0.53cvss 8.2epss 0.01

    Possible out of bound read due to improper validation of certificate chain in SSL or Internet key exchange in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-30349HigJun 14, 2022
    risk 0.53cvss 8.2epss 0.00

    Improper access control sequence for AC database after memory allocation can lead to possible memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables,…

  • CVE-2021-35117HigApr 1, 2022
    risk 0.53cvss 8.2epss 0.01

    An Out of Bounds read may potentially occur while processing an IBSS beacon, in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

  • CVE-2021-35088HigApr 1, 2022
    risk 0.53cvss 8.2epss 0.01

    Possible out of bound read due to improper validation of IE length during SSID IE parse when channel is DFS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon…

  • CVE-2020-11285HigMay 7, 2021
    risk 0.53cvss 8.2epss 0.01

    Buffer over-read while unpacking the RTCP packet we may read extra byte if wrong length is provided in RTCP packets in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon…

  • CVE-2020-11251HigApr 7, 2021
    risk 0.53cvss 8.2epss 0.01

    Out-of-bounds read vulnerability while accessing DTMF payload due to lack of check of buffer length before copying in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon…

  • CVE-2020-11191HigApr 7, 2021
    risk 0.53cvss 8.2epss 0.01

    Out of bound read occurs while processing crafted SDP due to lack of check of null string in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2020-11156HigNov 2, 2020
    risk 0.53cvss 8.1epss 0.00

    u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap packet received from peer device.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon…

  • CVE-2020-11141HigNov 2, 2020
    risk 0.53cvss 8.1epss 0.00

    u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap configuration request received from peer device.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,…

  • CVE-2021-1906MedKEVMay 7, 2021
    risk 0.52cvss 6.2epss 0.01

    Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2022-33242HigMar 10, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption due to improper authentication in Qualcomm IPC while loading unsigned lib in audio PD.

  • CVE-2022-25705HigMar 10, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response

  • CVE-2022-33248HigFeb 12, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http.

  • CVE-2022-33233HigFeb 12, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption due to configuration weakness in modem wile sending command to write protected files.

Page 6 of 15