Qcn6224 Firmware
by Qualcomm
CVEs (463)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-28547 | Hig | 0.55 | 8.4 | 0.00 | Apr 1, 2024 | Memory corruption in SPS Application while requesting for public key in sorter TA. | ||
| CVE-2023-43549 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption while processing TPC target power table in FTM TPC. | ||
| CVE-2023-43547 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption while invoking IOCTLs calls in Automotive Multimedia. | ||
| CVE-2023-43546 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption while invoking HGSL IOCTL context create. | ||
| CVE-2023-33066 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption in Audio while processing RT proxy port register driver. | ||
| CVE-2023-43514 | Hig | 0.55 | 8.4 | 0.00 | Jan 2, 2024 | Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP. | ||
| CVE-2023-33088 | Hig | 0.55 | 8.4 | 0.00 | Dec 5, 2023 | Memory corruption when processing cmd parameters while parsing vdev. | ||
| CVE-2023-33053 | Hig | 0.55 | 8.4 | 0.00 | Dec 5, 2023 | Memory corruption in Kernel while parsing metadata. | ||
| CVE-2023-33022 | Hig | 0.55 | 8.4 | 0.00 | Dec 5, 2023 | Memory corruption in HLOS while invoking IOCTL calls from user-space. | ||
| CVE-2023-24852 | Hig | 0.55 | 8.4 | 0.00 | Nov 7, 2023 | Memory Corruption in Core due to secure memory access by user while loading modem image. | ||
| CVE-2023-33029 | Hig | 0.55 | 8.4 | 0.00 | Oct 3, 2023 | Memory corruption in DSP Service during a remote call from HLOS to DSP. | ||
| CVE-2023-24853 | Hig | 0.55 | 8.4 | 0.00 | Oct 3, 2023 | Memory Corruption in HLOS while registering for key provisioning notify. | ||
| CVE-2022-33275 | Hig | 0.55 | 8.4 | 0.00 | Sep 5, 2023 | Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range. | ||
| CVE-2023-21628 | Hig | 0.55 | 8.4 | 0.00 | Jun 6, 2023 | Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. | ||
| CVE-2022-40522 | Hig | 0.55 | 8.4 | 0.00 | Jun 6, 2023 | Memory corruption in Linux Networking due to double free while handling a hyp-assign. | ||
| CVE-2022-40532 | Hig | 0.55 | 8.4 | 0.00 | Apr 13, 2023 | Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. | ||
| CVE-2022-40531 | Hig | 0.55 | 8.4 | 0.00 | Mar 10, 2023 | Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message. | ||
| CVE-2022-40530 | Hig | 0.55 | 8.4 | 0.00 | Mar 10, 2023 | Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase. | ||
| CVE-2022-25655 | Hig | 0.55 | 8.4 | 0.00 | Mar 10, 2023 | Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload. | ||
| CVE-2022-33277 | Hig | 0.55 | 8.4 | 0.00 | Feb 12, 2023 | Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command. |
- risk 0.55cvss 8.4epss 0.00
Memory corruption in SPS Application while requesting for public key in sorter TA.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while processing TPC target power table in FTM TPC.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while invoking IOCTLs calls in Automotive Multimedia.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while invoking HGSL IOCTL context create.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Audio while processing RT proxy port register driver.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP.
- risk 0.55cvss 8.4epss 0.00
Memory corruption when processing cmd parameters while parsing vdev.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Kernel while parsing metadata.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in HLOS while invoking IOCTL calls from user-space.
- risk 0.55cvss 8.4epss 0.00
Memory Corruption in Core due to secure memory access by user while loading modem image.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in DSP Service during a remote call from HLOS to DSP.
- risk 0.55cvss 8.4epss 0.00
Memory Corruption in HLOS while registering for key provisioning notify.
- risk 0.55cvss 8.4epss 0.00
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Linux Networking due to double free while handling a hyp-assign.
- risk 0.55cvss 8.4epss 0.00
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.
Page 4 of 24