VYPR

Wcn3950 Firmware

by Qualcomm

CVEs (904)

  • CVE-2023-33038MedJan 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while receiving a message in Bus Socket Transport Server.

  • CVE-2023-28580MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in WLAN Host while setting the PMK length in PMK length in internal cache.

  • CVE-2023-28579MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.

  • CVE-2023-22383MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in camera while installing a fd for a particular DMA buffer.

  • CVE-2023-28570MedNov 7, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing audio effects.

  • CVE-2023-21654MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio during playback session with audio effects enabled.

  • CVE-2023-28577MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel…

  • CVE-2023-28575MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.

  • CVE-2023-21650MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length.

  • CVE-2023-21649MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in WLAN while running doDriverCmd for an unspecific command.

  • CVE-2023-21633MedJul 4, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.

  • CVE-2023-21629MedJul 4, 2023
    risk 0.44cvss 6.8epss 0.00

    Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.

  • CVE-2022-33267MedJun 6, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Linux while sending DRM request.

  • CVE-2022-33263MedJun 6, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption due to use after free in Core when multiple DCI clients register and deregister.

  • CVE-2022-33227MedJun 6, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Linux android due to double free while calling unregister provider after register call.

  • CVE-2022-33302MedApr 13, 2023
    risk 0.44cvss 6.8epss 0.00

    Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length.

  • CVE-2022-33298MedApr 13, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption due to use after free in Modem while modem initialization.

  • CVE-2022-33289MedApr 13, 2023
    risk 0.44cvss 6.8epss 0.00

    Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.

  • CVE-2022-33245MedMar 10, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in WLAN due to use after free

  • CVE-2022-33246MedFeb 12, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user space with invalid session id.

Page 38 of 46