VYPR

Qcm6490 Firmware

by Qualcomm

CVEs (776)

  • CVE-2021-35071MedJun 14, 2022
    risk 0.36cvss 5.5epss 0.00

    Possible buffer over read due to lack of size validation while copying data from DBR buffer to RX buffer and can lead to Denial of Service in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables,…

  • CVE-2021-30331MedApr 1, 2022
    risk 0.36cvss 5.5epss 0.00

    Possible buffer overflow due to improper data validation of external commands sent via DIAG interface in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2021-1930MedSep 8, 2021
    risk 0.36cvss 5.5epss 0.00

    Possible out of bounds read due to incorrect validation of incoming buffer length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile

  • CVE-2020-11221MedMar 17, 2021
    risk 0.36cvss 5.5epss 0.00

    Usage of syscall by non-secure entity can allow extraction of secure QTEE diagnostic information in clear text form due to insufficient checks in the syscall handler and leads to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon…

  • CVE-2020-11199MedMar 17, 2021
    risk 0.36cvss 5.5epss 0.00

    HLOS to access EL3 stack canary by just mapping imem region due to Improper access control and can lead to information exposure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,…

  • CVE-2024-38426MedMar 3, 2025
    risk 0.35cvss 5.4epss 0.00

    While processing the authentication message in UE, improper authentication may lead to information disclosure.

  • CVE-2024-53009MedJul 8, 2025
    risk 0.34cvss 5.3epss 0.00

    Memory corruption while operating the mailbox in Automotive.

  • CVE-2021-1903MedNov 12, 2021
    risk 0.34cvss 5.3epss 0.01

    Possible denial of service scenario can occur due to lack of length check on Channel Switch Announcement IE in beacon or probe response frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT,…

  • CVE-2021-1967MedOct 20, 2021
    risk 0.34cvss 5.3epss 0.00

    Possible stack buffer overflow due to lack of check on the maximum number of post NAN discovery attributes while processing a NAN Match event in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2026-25268HigJul 6, 2026
    risk 0.00cvss 8.8epss 0.00

    Memory Corruption when processing invalid HT40 channel layouts during dynamic channel switching operations.

  • CVE-2026-21384MedJul 6, 2026
    risk 0.00cvss 5.3epss 0.00

    Memory Corruption when updating prepared commands with invalid port indices based on user space input exceeds supported read client limits.

  • CVE-2026-21379HigJul 6, 2026
    risk 0.00cvss 7.8epss 0.00

    Memory Corruption when allocating memory with sizes that exceed the maximum allowed value.

  • CVE-2026-21369MedJul 6, 2026
    risk 0.00cvss 5.3epss 0.00

    Memory Corruption when handling flash commands due to outdated LED count values being used after userspace modification.

  • CVE-2025-59617MedJul 6, 2026
    risk 0.00cvss 6.6epss 0.00

    Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input.

  • CVE-2025-59616MedJul 6, 2026
    risk 0.00cvss 6.6epss 0.00

    Memory Corruption when processing multiple IOCTL calls with the same buffer file descriptor input due to accessing already freed memory.

  • CVE-2025-59615MedJul 6, 2026
    risk 0.00cvss 6.6epss 0.00

    Memory Corruption when invoking device input/output control operations for mapping and unmapping persistent memory buffers due to improper synchronization.

Page 39 of 39