VYPR

Sm4350 Firmware

by Qualcomm

CVEs (68)

  • CVE-2022-40521HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to improper authorization in Modem

  • CVE-2022-33251HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem because of invalid network configuration.

  • CVE-2022-22060HigJun 6, 2023
    risk 0.49cvss 7.5epss 0.00

    Assertion occurs while processing Reconfiguration message due to improper validation

  • CVE-2022-40504HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.

  • CVE-2022-40508HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported.

  • CVE-2022-34144HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to reachable assertion in Modem during OSI decode scheduling.

  • CVE-2022-33305HigMay 2, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH.

  • CVE-2022-33270HigApr 13, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message.

  • CVE-2020-11241HigJun 9, 2021
    risk 0.49cvss 7.5epss 0.01

    Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attribute in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon…

  • CVE-2020-11238HigJun 9, 2021
    risk 0.49cvss 7.5epss 0.01

    Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2020-11296HigFeb 22, 2021
    risk 0.49cvss 7.5epss 0.01

    Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2020-11281HigFeb 22, 2021
    risk 0.49cvss 7.5epss 0.01

    Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to information disclosure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,…

  • CVE-2020-11280HigFeb 22, 2021
    risk 0.49cvss 7.5epss 0.01

    Denial of service while processing fine timing measurement request (FTMR) frame with reserved bits set in the FTM parameter IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon…

  • CVE-2020-11278HigFeb 22, 2021
    risk 0.49cvss 7.5epss 0.01

    Possible denial of service while handling host WMI command due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon…

  • CVE-2020-11270HigFeb 22, 2021
    risk 0.49cvss 7.5epss 0.01

    Possible denial of service due to RTT responder consistently rejects all FTMR by transmitting FTM1 with failure status in the FTM parameter IE in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,…

  • CVE-2020-11277HigFeb 22, 2021
    risk 0.48cvss 7.4epss 0.00

    Possible race condition during async fastrpc session after sending RPC message due to the fastrpc ctx gets free during async session in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2022-40529HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Memory corruption due to improper access control in kernel while processing a mapping request from root process.

  • CVE-2022-40523HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Information disclosure in Kernel due to indirect branch misprediction.

  • CVE-2022-22076HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    information disclosure due to cryptographic issue in Core during RPMB read request.

  • CVE-2020-11262HigJun 9, 2021
    risk 0.46cvss 7.0epss 0.00

    A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…