Fastconnect 7800 Firmware
by Qualcomm
CVEs (634)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-38426 | Med | 0.35 | 5.4 | 0.00 | Mar 3, 2025 | While processing the authentication message in UE, improper authentication may lead to information disclosure. | ||
| CVE-2024-53009 | Med | 0.34 | 5.3 | 0.00 | Jul 8, 2025 | Memory corruption while operating the mailbox in Automotive. | ||
| CVE-2023-33078 | Med | 0.33 | 5.1 | 0.00 | Mar 4, 2024 | Information Disclosure while processing IOCTL request in FastRPC. | ||
| CVE-2026-25271 | Hig | 0.00 | 7.8 | 0.00 | Jul 6, 2026 | Memory Corruption when processing asynchronous input parameters due to improper handling of modified values between check and use. | ||
| CVE-2026-25268 | Hig | 0.00 | 8.8 | 0.00 | Jul 6, 2026 | Memory Corruption when processing invalid HT40 channel layouts during dynamic channel switching operations. | ||
| CVE-2026-21384 | Med | 0.00 | 5.3 | 0.00 | Jul 6, 2026 | Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits. | ||
| CVE-2026-21383 | Hig | 0.00 | 7.1 | 0.00 | Jul 6, 2026 | Cryptographic Issue when using a static initialization vector for AES-GCM key wrapping, which requires a unique value for each call to ensure security. | ||
| CVE-2026-21379 | Hig | 0.00 | 7.8 | 0.00 | Jul 6, 2026 | Memory Corruption when allocating memory with sizes that exceed the maximum allowed value. | ||
| CVE-2026-21370 | Med | 0.00 | 5.3 | 0.00 | Jul 6, 2026 | Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values. | ||
| CVE-2026-21369 | Med | 0.00 | 5.3 | 0.00 | Jul 6, 2026 | Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification. | ||
| CVE-2026-21368 | Med | 0.00 | 5.3 | 0.00 | Jul 6, 2026 | Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks. | ||
| CVE-2025-59617 | Med | 0.00 | 6.6 | 0.00 | Jul 6, 2026 | Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input. | ||
| CVE-2025-59616 | Med | 0.00 | 6.6 | 0.00 | Jul 6, 2026 | Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input due to accessing already freed memory. | ||
| CVE-2025-59615 | Med | 0.00 | 6.6 | 0.00 | Jul 6, 2026 | Memory Corruption when invoking device input/output control operations for mapping and unmapping persistent memory buffers due to improper synchronization. |
- risk 0.35cvss 5.4epss 0.00
While processing the authentication message in UE, improper authentication may lead to information disclosure.
- risk 0.34cvss 5.3epss 0.00
Memory corruption while operating the mailbox in Automotive.
- risk 0.33cvss 5.1epss 0.00
Information Disclosure while processing IOCTL request in FastRPC.
- risk 0.00cvss 7.8epss 0.00
Memory Corruption when processing asynchronous input parameters due to improper handling of modified values between check and use.
- risk 0.00cvss 8.8epss 0.00
Memory Corruption when processing invalid HT40 channel layouts during dynamic channel switching operations.
- risk 0.00cvss 5.3epss 0.00
Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.
- risk 0.00cvss 7.1epss 0.00
Cryptographic Issue when using a static initialization vector for AES-GCM key wrapping, which requires a unique value for each call to ensure security.
- risk 0.00cvss 7.8epss 0.00
Memory Corruption when allocating memory with sizes that exceed the maximum allowed value.
- risk 0.00cvss 5.3epss 0.00
Memory Corruption when validating input batch size and buffer plane count exceeds maximum allowed values.
- risk 0.00cvss 5.3epss 0.00
Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification.
- risk 0.00cvss 5.3epss 0.00
Memory Corruption when parsing jpeg commands due to unaccounted extra writes to the buffer during validation checks.
- risk 0.00cvss 6.6epss 0.00
Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input.
- risk 0.00cvss 6.6epss 0.00
Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input due to accessing already freed memory.
- risk 0.00cvss 6.6epss 0.00
Memory Corruption when invoking device input/output control operations for mapping and unmapping persistent memory buffers due to improper synchronization.
Page 32 of 32