Qca6698aq Firmware
by Qualcomm
CVEs (523)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-34146 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation. | ||
| CVE-2022-34145 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS due to buffer over-read in WLAN Host while parsing frame information. | ||
| CVE-2022-33306 | Hig | 0.49 | 7.5 | 0.00 | Feb 12, 2023 | Transient DOS due to buffer over-read in WLAN while processing an incoming management frame with incorrectly filled IEs. | ||
| CVE-2023-22382 | Hig | 0.48 | 7.4 | 0.00 | Oct 3, 2023 | Weak configuration in Automotive while VM is processing a listener request from TEE. | ||
| CVE-2026-24092 | Hig | 0.47 | 7.2 | 0.00 | Jun 1, 2026 | Memory Corruption when processing fastboot commands to set display mode. | ||
| CVE-2026-24091 | Hig | 0.47 | 7.2 | 0.00 | Jun 1, 2026 | Memory corruption while processing fastboot commands with improperly formatted input. | ||
| CVE-2026-24089 | Hig | 0.47 | 7.2 | 0.00 | Jun 1, 2026 | Memory corruption while processing fastboot commands with invalid input. | ||
| CVE-2026-24087 | Hig | 0.47 | 7.2 | 0.00 | Jun 1, 2026 | Memory corruption while processing fastboot OEM commands. | ||
| CVE-2026-24085 | Hig | 0.47 | 7.2 | 0.00 | Jun 1, 2026 | Memory Corruption when processing display command line information due to improper initialization of a variable. | ||
| CVE-2025-47383 | Hig | 0.47 | 7.2 | 0.00 | Mar 2, 2026 | Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE. | ||
| CVE-2025-21425 | Hig | 0.47 | 7.3 | 0.00 | Apr 7, 2025 | Memory corruption may occur due top improper access control in HAB process. | ||
| CVE-2024-21469 | Hig | 0.47 | 7.3 | 0.00 | Jul 1, 2024 | Memory corruption when an invoke call and a TEE call are bound for the same trusted application. | ||
| CVE-2024-21480 | Hig | 0.47 | 7.3 | 0.00 | May 6, 2024 | Memory corruption while playing audio file having large-sized input buffer. | ||
| CVE-2024-21463 | Hig | 0.47 | 7.3 | 0.00 | Apr 1, 2024 | Memory corruption while processing Codec2 during v13k decoder pitch synthesis. | ||
| CVE-2024-21452 | Hig | 0.47 | 7.3 | 0.00 | Apr 1, 2024 | Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions. | ||
| CVE-2023-43548 | Hig | 0.47 | 7.3 | 0.00 | Mar 4, 2024 | Memory corruption while parsing qcp clip with invalid chunk data size. | ||
| CVE-2023-43519 | Hig | 0.47 | 7.3 | 0.00 | Feb 6, 2024 | Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size. | ||
| CVE-2023-43518 | Hig | 0.47 | 7.3 | 0.00 | Feb 6, 2024 | Memory corruption in video while parsing invalid mp2 clip. | ||
| CVE-2026-24090 | Hig | 0.46 | 7.1 | 0.00 | Jun 1, 2026 | Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow. | ||
| CVE-2025-47378 | Hig | 0.46 | 7.1 | 0.00 | Mar 2, 2026 | Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain. |
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN Host while parsing frame information.
- risk 0.49cvss 7.5epss 0.00
Transient DOS due to buffer over-read in WLAN while processing an incoming management frame with incorrectly filled IEs.
- risk 0.48cvss 7.4epss 0.00
Weak configuration in Automotive while VM is processing a listener request from TEE.
- risk 0.47cvss 7.2epss 0.00
Memory Corruption when processing fastboot commands to set display mode.
- risk 0.47cvss 7.2epss 0.00
Memory corruption while processing fastboot commands with improperly formatted input.
- risk 0.47cvss 7.2epss 0.00
Memory corruption while processing fastboot commands with invalid input.
- risk 0.47cvss 7.2epss 0.00
Memory corruption while processing fastboot OEM commands.
- risk 0.47cvss 7.2epss 0.00
Memory Corruption when processing display command line information due to improper initialization of a variable.
- risk 0.47cvss 7.2epss 0.00
Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.
- risk 0.47cvss 7.3epss 0.00
Memory corruption may occur due top improper access control in HAB process.
- risk 0.47cvss 7.3epss 0.00
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
- risk 0.47cvss 7.3epss 0.00
Memory corruption while playing audio file having large-sized input buffer.
- risk 0.47cvss 7.3epss 0.00
Memory corruption while processing Codec2 during v13k decoder pitch synthesis.
- risk 0.47cvss 7.3epss 0.00
Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.
- risk 0.47cvss 7.3epss 0.00
Memory corruption while parsing qcp clip with invalid chunk data size.
- risk 0.47cvss 7.3epss 0.00
Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.
- risk 0.47cvss 7.3epss 0.00
Memory corruption in video while parsing invalid mp2 clip.
- risk 0.46cvss 7.1epss 0.00
Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.
- risk 0.46cvss 7.1epss 0.00
Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.
Page 20 of 27