Fastconnect 7800 Firmware
by Qualcomm
CVEs (634)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2025-47354 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while allocating buffers in DSP service. | ||
| CVE-2025-47351 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing user buffers. | ||
| CVE-2025-47349 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing an escape call. | ||
| CVE-2025-47341 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | memory corruption while processing an image encoding completion event. | ||
| CVE-2025-47340 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing IOCTL call to get the mapping. | ||
| CVE-2025-47338 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing escape commands from userspace. | ||
| CVE-2025-27054 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing a malformed license file during reboot. | ||
| CVE-2025-27053 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption during PlayReady APP usecase while processing TA commands. | ||
| CVE-2025-27048 | Hig | 0.51 | 7.8 | 0.00 | Oct 9, 2025 | Memory corruption while processing camera platform driver IOCTL calls. | ||
| CVE-2025-47329 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while handling invalid inputs in application info setup. | ||
| CVE-2025-47327 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while encoding the image data. | ||
| CVE-2025-47317 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption due to global buffer overflow when a test command uses an invalid payload type. | ||
| CVE-2025-47316 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption due to double free when multiple threads race to set the timestamp store. | ||
| CVE-2025-27037 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers. | ||
| CVE-2025-27032 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency. | ||
| CVE-2025-21481 | Hig | 0.51 | 7.8 | 0.00 | Sep 24, 2025 | Memory corruption while performing private key encryption in trusted application. | ||
| CVE-2025-27076 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing simultaneous requests via escape path. | ||
| CVE-2025-27075 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host. | ||
| CVE-2025-27069 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing DDI command calls. | ||
| CVE-2025-27068 | Hig | 0.51 | 7.8 | 0.00 | Aug 6, 2025 | Memory corruption while processing an IOCTL command with an arbitrary address. |
- risk 0.51cvss 7.8epss 0.00
Memory corruption while allocating buffers in DSP service.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing user buffers.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing an escape call.
- risk 0.51cvss 7.8epss 0.00
memory corruption while processing an image encoding completion event.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing IOCTL call to get the mapping.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing escape commands from userspace.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing a malformed license file during reboot.
- risk 0.51cvss 7.8epss 0.00
Memory corruption during PlayReady APP usecase while processing TA commands.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing camera platform driver IOCTL calls.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while handling invalid inputs in application info setup.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while encoding the image data.
- risk 0.51cvss 7.8epss 0.00
Memory corruption due to global buffer overflow when a test command uses an invalid payload type.
- risk 0.51cvss 7.8epss 0.00
Memory corruption due to double free when multiple threads race to set the timestamp store.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing config_dev IOCTL when camera kernel driver drops its reference to CPU buffers.
- risk 0.51cvss 7.8epss 0.00
memory corruption while loading a PIL authenticated VM, when authenticated VM image is loaded without maintaining cache coherency.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while performing private key encryption in trusted application.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing simultaneous requests via escape path.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing IOCTL command with larger buffer in Bluetooth Host.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing DDI command calls.
- risk 0.51cvss 7.8epss 0.00
Memory corruption while processing an IOCTL command with an arbitrary address.
Page 10 of 32