VYPR

Sa8295p Firmware

by Qualcomm

CVEs (478)

  • CVE-2024-33049HigOct 7, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame.

  • CVE-2024-33057HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.

  • CVE-2024-33051HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.

  • CVE-2024-33050HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.

  • CVE-2024-23364HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of a beacon frame that is received from over-the-air (OTA).

  • CVE-2024-33026HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.

  • CVE-2024-33025HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.

  • CVE-2024-33024HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length.

  • CVE-2024-33015HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.

  • CVE-2024-33014HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing ESP IE from beacon/probe response frame.

  • CVE-2024-33013HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.

  • CVE-2024-33012HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.

  • CVE-2024-33011HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.

  • CVE-2024-33010HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing fragments of MBSSID IE from beacon frame.

  • CVE-2024-21479HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS during music playback of ALAC content.

  • CVE-2023-43536HigFeb 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parse fils IE with length equal to 1.

  • CVE-2023-43533HigFeb 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.

  • CVE-2023-43522HigFeb 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.

  • CVE-2023-43511HigJan 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.

  • CVE-2023-33112HigJan 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.

Page 16 of 24