VYPR

Snapdragon X55 5g Modem Rf System Firmware

by Qualcomm

CVEs (260)

  • CVE-2022-33275HigSep 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.

  • CVE-2023-28537HigAug 8, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while allocating memory in COmxApeDec module in Audio.

  • CVE-2023-21628HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.

  • CVE-2022-40507HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.01

    Memory corruption due to double free in Core while mapping HLOS address to the list.

  • CVE-2022-33307HigJun 6, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.

  • CVE-2023-21666HigMay 2, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.

  • CVE-2023-21665HigMay 2, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in Graphics while importing a file.

  • CVE-2022-40532HigApr 13, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.

  • CVE-2026-24079HigAug 4, 2026
    risk 0.53cvss 8.1epss 0.00

    Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.

  • CVE-2025-21487HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.

  • CVE-2025-21484HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.

  • CVE-2024-53026HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.

  • CVE-2024-53021HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while processing goodbye RTCP packet from network.

  • CVE-2024-53020HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while decoding the RTP packet with invalid header extension from network.

  • CVE-2024-45552HigApr 7, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur during a video call if a device resets due to a non-conforming RTCP packet that doesn`t adhere to RFC standards.

  • CVE-2024-38408HigNov 4, 2024
    risk 0.53cvss 8.2epss 0.00

    Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.

  • CVE-2024-23359HigSep 2, 2024
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.

  • CVE-2023-28585HigDec 5, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption while loading an ELF segment in TEE Kernel.

  • CVE-2023-28545HigNov 7, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption in TZ Secure OS while loading an app ELF.

  • CVE-2023-24849HigOct 3, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in data Modem while parsing an FMTP line in an SDP message.

Page 3 of 13