VYPR

Qcm6490 Firmware

by Qualcomm

CVEs (776)

  • CVE-2020-11188CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11171CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Buffer over-read can happen while parsing received SDP values due to lack of NULL termination check on SDP in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2020-11166CriMar 17, 2021
    risk 0.59cvss 9.1epss 0.01

    Potential out of bound read exception when UE receives unusually large number of padding octets in the beginning of ROHC header in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile,…

  • CVE-2020-11276CriFeb 22, 2021
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper validation of P2P IE and NOA attribute lengths in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity,…

  • CVE-2020-11275CriFeb 22, 2021
    risk 0.59cvss 9.1epss 0.01

    Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beacon in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial…

  • CVE-2020-3670CriNov 2, 2020
    risk 0.59cvss 9.1epss 0.01

    u'Potential out of bounds read while processing downlink NAS transport message due to improper length check of Information Element(IEI) NAS message container' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2026-25277HigJun 1, 2026
    risk 0.57cvss 8.8epss 0.00

    Memory corruption while using Strongbox due to buffer overflow.

  • CVE-2026-25276HigJun 1, 2026
    risk 0.57cvss 8.8epss 0.00

    Memory corruption while using Strongbox due to missing bounds check.

  • CVE-2025-47392HigApr 6, 2026
    risk 0.57cvss 8.8epss 0.00

    Memory corruption when decoding corrupted satellite data files with invalid signature offsets.

  • CVE-2024-38420HigFeb 3, 2025
    risk 0.57cvss 8.8epss 0.00

    Memory corruption while configuring a Hypervisor based input virtual device.

  • CVE-2023-21673HigOct 3, 2023
    risk 0.57cvss 8.7epss 0.00

    Improper Access to the VM resource manager can lead to Memory Corruption.

  • CVE-2020-11269HigFeb 22, 2021
    risk 0.57cvss 8.8epss 0.00

    Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2020-11177HigFeb 22, 2021
    risk 0.57cvss 8.8epss 0.00

    User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and device lock in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2025-47345HigJan 7, 2026
    risk 0.55cvss 8.4epss 0.00

    Cryptographic issue may occur while encrypting license data.

  • CVE-2024-33044HigDec 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while Configuring the SMR/S2CR register in Bypass mode.

  • CVE-2024-33065HigOct 7, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption while taking snapshot when an offset variable is set by camera driver.

  • CVE-2024-33060HigSep 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when two threads try to map and unmap a single node simultaneously.

  • CVE-2024-33047HigSep 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when the captureRead QDCM command is invoked from user-space.

  • CVE-2024-33045HigSep 2, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption when BTFM client sends new messages over Slimbus to ADSP.

  • CVE-2024-33034HigAug 5, 2024
    risk 0.55cvss 8.4epss 0.00

    Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.

Page 5 of 39