Wsa8830 Firmware
by Qualcomm
CVEs (1,121)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2020-11161 | Hig | 0.46 | 7.1 | 0.00 | Jun 9, 2021 | Out-of-bounds memory access can occur while calculating alignment requirements for a negative width from external components in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &… | ||
| CVE-2020-11290 | Hig | 0.46 | 7.0 | 0.00 | Mar 17, 2021 | Use after free condition in msm ioctl events due to race between the ioctl register and deregister events in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables | ||
| CVE-2026-24076 | Med | 0.44 | 6.7 | 0.00 | Aug 4, 2026 | Memory Corruption when processing registry values with incorrect types using a direct query method. | ||
| CVE-2025-59613 | Med | 0.44 | 6.7 | 0.00 | Jun 1, 2026 | Memory Corruption when output buffer size is smaller than input buffer size during data copying operation. | ||
| CVE-2025-59612 | Med | 0.44 | 6.7 | 0.00 | Jun 1, 2026 | Memory corruption in windows drivers while sending incorrect trusted application request | ||
| CVE-2025-59611 | Med | 0.44 | 6.7 | 0.00 | Jun 1, 2026 | Memory corruption in diagnostic services due to absence of input validation | ||
| CVE-2025-47344 | Med | 0.44 | 6.7 | 0.00 | Jan 7, 2026 | Memory corruption while handling sensor utility operations. | ||
| CVE-2025-47337 | Med | 0.44 | 6.7 | 0.00 | Jan 7, 2026 | Memory corruption while accessing a synchronization object during concurrent operations. | ||
| CVE-2025-47336 | Med | 0.44 | 6.7 | 0.00 | Jan 7, 2026 | Memory corruption while performing sensor register read operations. | ||
| CVE-2025-47335 | Med | 0.44 | 6.7 | 0.00 | Jan 7, 2026 | Memory corruption while parsing clock configuration data for a specific hardware type. | ||
| CVE-2025-47334 | Med | 0.44 | 6.7 | 0.00 | Jan 7, 2026 | Memory corruption while processing shared command buffer packet between camera userspace and kernel. | ||
| CVE-2025-47332 | Med | 0.44 | 6.7 | 0.00 | Jan 7, 2026 | Memory corruption while processing a config call from userspace. | ||
| CVE-2025-47319 | Med | 0.44 | 6.7 | 0.00 | Dec 18, 2025 | Information disclosure while exposing internal TA-to-TA communication APIs to HLOS | ||
| CVE-2024-49829 | Med | 0.44 | 6.7 | 0.00 | May 6, 2025 | Memory corruption can occur during context user dumps due to inadequate checks on buffer length. | ||
| CVE-2024-45568 | Med | 0.44 | 6.7 | 0.00 | May 6, 2025 | Memory corruption due to improper bounds check while command handling in camera-kernel driver. | ||
| CVE-2024-49848 | Med | 0.44 | 6.7 | 0.00 | Apr 7, 2025 | Memory corruption while processing multiple IOCTL calls from HLOS to DSP. | ||
| CVE-2024-33061 | Med | 0.44 | 6.8 | 0.00 | Jan 6, 2025 | Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process. | ||
| CVE-2024-33055 | Med | 0.44 | 6.7 | 0.00 | Jan 6, 2025 | Memory corruption while invoking IOCTL calls to unmap the DMA buffers. | ||
| CVE-2024-33041 | Med | 0.44 | 6.7 | 0.00 | Jan 6, 2025 | Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls, | ||
| CVE-2024-33053 | Med | 0.44 | 6.7 | 0.00 | Dec 2, 2024 | Memory corruption when multiple threads try to unregister the CVP buffer at the same time. |
- risk 0.46cvss 7.1epss 0.00
Out-of-bounds memory access can occur while calculating alignment requirements for a negative width from external components in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…
- risk 0.46cvss 7.0epss 0.00
Use after free condition in msm ioctl events due to race between the ioctl register and deregister events in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables
- risk 0.44cvss 6.7epss 0.00
Memory Corruption when processing registry values with incorrect types using a direct query method.
- risk 0.44cvss 6.7epss 0.00
Memory Corruption when output buffer size is smaller than input buffer size during data copying operation.
- risk 0.44cvss 6.7epss 0.00
Memory corruption in windows drivers while sending incorrect trusted application request
- risk 0.44cvss 6.7epss 0.00
Memory corruption in diagnostic services due to absence of input validation
- risk 0.44cvss 6.7epss 0.00
Memory corruption while handling sensor utility operations.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while accessing a synchronization object during concurrent operations.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while performing sensor register read operations.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while parsing clock configuration data for a specific hardware type.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while processing shared command buffer packet between camera userspace and kernel.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while processing a config call from userspace.
- risk 0.44cvss 6.7epss 0.00
Information disclosure while exposing internal TA-to-TA communication APIs to HLOS
- risk 0.44cvss 6.7epss 0.00
Memory corruption can occur during context user dumps due to inadequate checks on buffer length.
- risk 0.44cvss 6.7epss 0.00
Memory corruption due to improper bounds check while command handling in camera-kernel driver.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while processing multiple IOCTL calls from HLOS to DSP.
- risk 0.44cvss 6.8epss 0.00
Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel without initializing the process.
- risk 0.44cvss 6.7epss 0.00
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
- risk 0.44cvss 6.7epss 0.00
Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,
- risk 0.44cvss 6.7epss 0.00
Memory corruption when multiple threads try to unregister the CVP buffer at the same time.
Page 45 of 57