Qcc5100 Firmware
by Qualcomm
CVEs (71)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-33239 | Hig | 0.49 | 7.5 | 0.00 | Nov 15, 2022 | Transient DOS due to loop with unreachable exit condition in WLAN firmware while parsing IPV6 extension header. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,… | ||
| CVE-2022-33237 | Hig | 0.49 | 7.5 | 0.00 | Nov 15, 2022 | Transient DOS due to buffer over-read in WLAN firmware while processing PPE threshold. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon… | ||
| CVE-2022-25741 | Hig | 0.49 | 7.5 | 0.00 | Nov 15, 2022 | Denial of service in WLAN due to potential null pointer dereference while accessing the memory location in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables | ||
| CVE-2022-25749 | Hig | 0.49 | 7.5 | 0.00 | Oct 19, 2022 | Transient Denial-of-Service in WLAN due to buffer over-read while parsing MDNS frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon… | ||
| CVE-2022-25736 | Hig | 0.49 | 7.5 | 0.01 | Oct 19, 2022 | Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,… | ||
| CVE-2022-40537 | Hig | 0.47 | 7.3 | 0.00 | Mar 10, 2023 | Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response. | ||
| CVE-2022-40515 | Hig | 0.47 | 7.3 | 0.00 | Mar 10, 2023 | Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms. | ||
| CVE-2022-25687 | Hig | 0.47 | 7.3 | 0.00 | Oct 19, 2022 | memory corruption in video due to buffer overflow while parsing asf clips in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | ||
| CVE-2023-21663 | Med | 0.44 | 6.7 | 0.00 | Sep 5, 2023 | Memory Corruption while accessing metadata in Display. | ||
| CVE-2023-21655 | Med | 0.44 | 6.7 | 0.00 | Sep 5, 2023 | Memory corruption in Audio while validating and mapping metadata. | ||
| CVE-2023-21654 | Med | 0.44 | 6.7 | 0.00 | Sep 5, 2023 | Memory corruption in Audio during playback session with audio effects enabled. | ||
| CVE-2023-21644 | Med | 0.44 | 6.7 | 0.00 | Sep 5, 2023 | Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request. | ||
| CVE-2023-21636 | Med | 0.44 | 6.7 | 0.00 | Sep 5, 2023 | Memory Corruption due to improper validation of array index in Linux while updating adn record. | ||
| CVE-2022-40524 | Med | 0.44 | 6.7 | 0.00 | Sep 5, 2023 | Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service. | ||
| CVE-2023-21650 | Med | 0.44 | 6.7 | 0.00 | Aug 8, 2023 | Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length. | ||
| CVE-2023-21649 | Med | 0.44 | 6.7 | 0.00 | Aug 8, 2023 | Memory corruption in WLAN while running doDriverCmd for an unspecific command. | ||
| CVE-2023-21648 | Med | 0.44 | 6.7 | 0.00 | Aug 8, 2023 | Memory corruption in RIL while trying to send apdu packet. | ||
| CVE-2023-21627 | Med | 0.44 | 6.7 | 0.00 | Aug 8, 2023 | Memory corruption in Trusted Execution Environment while calling service API with invalid address. | ||
| CVE-2022-40519 | Med | 0.44 | 6.8 | 0.00 | Jan 9, 2023 | Information disclosure due to buffer overread in Core | ||
| CVE-2022-25712 | Med | 0.44 | 6.7 | 0.00 | Dec 13, 2022 | Memory corruption in camera due to buffer copy without checking size of input in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Wearables |
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to loop with unreachable exit condition in WLAN firmware while parsing IPV6 extension header. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN firmware while processing PPE threshold. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon…
- risk 0.49cvss 7.5epss 0.00
Denial of service in WLAN due to potential null pointer dereference while accessing the memory location in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- risk 0.49cvss 7.5epss 0.00
Transient Denial-of-Service in WLAN due to buffer over-read while parsing MDNS frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…
- risk 0.49cvss 7.5epss 0.01
Denial of service in WLAN due to out-of-bound read happens while processing VHT action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…
- risk 0.47cvss 7.3epss 0.00
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.
- risk 0.47cvss 7.3epss 0.00
Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.
- risk 0.47cvss 7.3epss 0.00
memory corruption in video due to buffer overflow while parsing asf clips in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
- risk 0.44cvss 6.7epss 0.00
Memory Corruption while accessing metadata in Display.
- risk 0.44cvss 6.7epss 0.00
Memory corruption in Audio while validating and mapping metadata.
- risk 0.44cvss 6.7epss 0.00
Memory corruption in Audio during playback session with audio effects enabled.
- risk 0.44cvss 6.7epss 0.00
Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.
- risk 0.44cvss 6.7epss 0.00
Memory Corruption due to improper validation of array index in Linux while updating adn record.
- risk 0.44cvss 6.7epss 0.00
Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.
- risk 0.44cvss 6.7epss 0.00
Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length.
- risk 0.44cvss 6.7epss 0.00
Memory corruption in WLAN while running doDriverCmd for an unspecific command.
- risk 0.44cvss 6.7epss 0.00
Memory corruption in RIL while trying to send apdu packet.
- risk 0.44cvss 6.7epss 0.00
Memory corruption in Trusted Execution Environment while calling service API with invalid address.
- risk 0.44cvss 6.8epss 0.00
Information disclosure due to buffer overread in Core
- risk 0.44cvss 6.7epss 0.00
Memory corruption in camera due to buffer copy without checking size of input in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile, Snapdragon Wearables
Page 3 of 4