VYPR

Qca6174a Firmware

by Qualcomm

CVEs (627)

  • CVE-2022-40529HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Memory corruption due to improper access control in kernel while processing a mapping request from root process.

  • CVE-2022-40523HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Information disclosure in Kernel due to indirect branch misprediction.

  • CVE-2022-22076HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    information disclosure due to cryptographic issue in Core during RPMB read request.

  • CVE-2021-30278HigJan 3, 2022
    risk 0.46cvss 7.1epss 0.00

    Improper input validation in TrustZone memory transfer interface can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and…

  • CVE-2021-1894HigJan 3, 2022
    risk 0.46cvss 7.1epss 0.00

    Improper access control in TrustZone due to improper error handling while handling the signing key in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and…

  • CVE-2021-1935HigSep 9, 2021
    risk 0.46cvss 7.1epss 0.00

    Possible null pointer dereference due to lack of validation check for passed pointer during key import in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon…

  • CVE-2020-11262HigJun 9, 2021
    risk 0.46cvss 7.0epss 0.00

    A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2020-11233HigJun 9, 2021
    risk 0.46cvss 7.0epss 0.00

    Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again from mmc without validation in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice…

  • CVE-2020-11161HigJun 9, 2021
    risk 0.46cvss 7.1epss 0.00

    Out-of-bounds memory access can occur while calculating alignment requirements for a negative width from external components in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11290HigMar 17, 2021
    risk 0.46cvss 7.0epss 0.00

    Use after free condition in msm ioctl events due to race between the ioctl register and deregister events in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2025-47319MedDec 18, 2025
    risk 0.44cvss 6.7epss 0.00

    Information disclosure while exposing internal TA-to-TA communication APIs to HLOS

  • CVE-2024-49848MedApr 7, 2025
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing multiple IOCTL calls from HLOS to DSP.

  • CVE-2024-23376MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call.

  • CVE-2024-23374MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file.

  • CVE-2024-33016MedSep 2, 2024
    risk 0.44cvss 6.8epss 0.00

    memory corruption when an invalid firehose patch command is invoked.

  • CVE-2023-43521MedMay 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when multiple listeners are being registered with the same file descriptor.

  • CVE-2023-33038MedJan 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while receiving a message in Bus Socket Transport Server.

  • CVE-2023-21629MedJul 4, 2023
    risk 0.44cvss 6.8epss 0.00

    Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.

  • CVE-2022-33302MedApr 13, 2023
    risk 0.44cvss 6.8epss 0.00

    Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length.

  • CVE-2022-33289MedApr 13, 2023
    risk 0.44cvss 6.8epss 0.00

    Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.

Page 28 of 32