VYPR

Wcd9385 Firmware

by Qualcomm

CVEs (1,106)

  • CVE-2021-30345MedJun 14, 2022
    risk 0.42cvss 6.5epss 0.00

    RPM secure Stream can access any secure resource due to improper SMMU configuration in Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking

  • CVE-2021-30348MedJan 3, 2022
    risk 0.42cvss 6.5epss 0.00

    Improper validation of LLM utility timers availability can lead to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon…

  • CVE-2021-1918MedJan 3, 2022
    risk 0.42cvss 6.5epss 0.00

    Improper handling of resource allocation in virtual machines can lead to information exposure in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2021-1960MedSep 9, 2021
    risk 0.42cvss 6.5epss 0.00

    Improper handling of ASB-C broadcast packets with crafted opcode in LMP can lead to uncontrolled resource consumption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2021-1957MedSep 9, 2021
    risk 0.42cvss 6.5epss 0.00

    Improper Access Control when ACL link encryption is failed and ACL link is not disconnected during reconnection with paired device in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music

  • CVE-2020-11230MedMar 17, 2021
    risk 0.42cvss 6.4epss 0.00

    Potential arbitrary memory corruption when the qseecom driver updates ion physical addresses in the buffer as it exposes a physical address to user land in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2020-11220MedMar 17, 2021
    risk 0.42cvss 6.4epss 0.00

    While processing storage SCM commands there is a time of check or time of use window where a pointer used could be invalid at a specific time while executing the storage SCM call in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT,…

  • CVE-2025-47406MedMay 4, 2026
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure while processing IOCTL handler callbacks without verifying buffer size.

  • CVE-2025-47331MedJan 7, 2026
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing a firmware event.

  • CVE-2025-27045MedOct 9, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing batch command execution in Video driver.

  • CVE-2025-27036MedSep 24, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure when Video engine escape input data is less than expected minimum size.

  • CVE-2025-21433MedJul 8, 2025
    risk 0.40cvss 6.2epss 0.00

    Transient DOS when importing a PKCS#8-encoded RSA private key with a zero-sized modulus.

  • CVE-2024-45551MedApr 7, 2025
    risk 0.40cvss 6.2epss 0.00

    Cryptographic issue occurs during PIN/password verification using Gatekeeper, where RPMB writes can be dropped on verification failure, potentially leading to a user throttling bypass.

  • CVE-2024-38416MedFeb 3, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure during audio playback.

  • CVE-2024-38414MedFeb 3, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while processing information on firmware image during core initialization.

  • CVE-2024-23357MedAug 5, 2024
    risk 0.40cvss 6.2epss 0.00

    Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.

  • CVE-2023-33065MedFeb 6, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in Audio while accessing AVCS services from ADSP payload.

  • CVE-2023-28569MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HAL while handling command through WMI interfaces.

  • CVE-2023-28568MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HAL when reception status handler is called.

  • CVE-2023-28566MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HAL while handling the WMI state info command.

Page 52 of 56