VYPR

Qca6678aq Firmware

by Qualcomm

CVEs (253)

  • CVE-2022-33275HigSep 5, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.

  • CVE-2022-40532HigApr 13, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.

  • CVE-2022-40531HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.

  • CVE-2022-40530HigMar 10, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.

  • CVE-2022-33277HigFeb 12, 2023
    risk 0.55cvss 8.4epss 0.00

    Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.

  • CVE-2026-24079HigAug 4, 2026
    risk 0.53cvss 8.1epss 0.00

    Cryptographic Issue while processing registration requests with malformed or missing authentication parameters.

  • CVE-2025-21487HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding RTP packet received by UE from the network, when payload length mentioned is greater than the available buffer length.

  • CVE-2025-21484HigSep 24, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when UE receives the RTP packet from the network, while decoding and reassembling the fragments from RTP packet.

  • CVE-2025-21427HigJul 8, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network.

  • CVE-2024-53026HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure when an invalid RTCP packet is received during a VoLTE/VoWiFi IMS call.

  • CVE-2024-53021HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while processing goodbye RTCP packet from network.

  • CVE-2024-53020HigJun 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure may occur while decoding the RTP packet with invalid header extension from network.

  • CVE-2024-49846HigMay 6, 2025
    risk 0.53cvss 8.2epss 0.00

    Memory corruption while decoding of OTA messages from T3448 IE.

  • CVE-2024-49839HigFeb 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Memory corruption during management frame processing due to mismatch in T2LM info element.

  • CVE-2024-49838HigFeb 3, 2025
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while parsing the OCI IE with invalid length.

  • CVE-2024-38408HigNov 4, 2024
    risk 0.53cvss 8.2epss 0.00

    Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.

  • CVE-2024-33073HigOct 7, 2024
    risk 0.53cvss 8.2epss 0.00

    Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.

  • CVE-2022-33271HigFeb 12, 2023
    risk 0.53cvss 8.2epss 0.00

    Information disclosure due to buffer over-read in WLAN while parsing NMF frame.

  • CVE-2025-47357HigNov 4, 2025
    risk 0.52cvss 8.0epss 0.00

    Information Disclosure when a user-level driver performs QFPROM read or write operations on Fuse regions.

  • CVE-2026-24080HigAug 4, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption when handling malformed request parameters in the fingerprint TA.

Page 3 of 13