VYPR

Sa8295p Firmware

by Qualcomm

CVEs (478)

  • CVE-2024-33067MedJan 6, 2025
    risk 0.40cvss 6.1epss 0.00

    Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.

  • CVE-2024-33037MedDec 2, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.

  • CVE-2024-23357MedAug 5, 2024
    risk 0.40cvss 6.2epss 0.00

    Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.

  • CVE-2023-43528MedMay 6, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.

  • CVE-2023-33065MedFeb 6, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in Audio while accessing AVCS services from ADSP payload.

  • CVE-2023-28569MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HAL while handling command through WMI interfaces.

  • CVE-2023-28563MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in IOE Firmware while handling WMI command.

  • CVE-2023-28554MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.

  • CVE-2023-28553MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure in WLAN Host when processing WMI event command.

  • CVE-2023-28571MedOct 3, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.

  • CVE-2022-40533MedJun 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.

  • CVE-2022-22075MedMar 10, 2023
    risk 0.40cvss 6.2epss 0.00

    Information Disclosure in Graphics during GPU context switch.

  • CVE-2022-25664MedOct 19, 2022
    risk 0.40cvss 6.2epss 0.00

    Information disclosure due to exposure of information while GPU reads the data in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

  • CVE-2022-22101MedSep 2, 2022
    risk 0.40cvss 6.2epss 0.00

    Denial of service in multimedia due to uncontrolled resource consumption while parsing an incoming HAB message in Snapdragon Auto

  • CVE-2023-28586MedDec 5, 2023
    risk 0.39cvss 6.0epss 0.00

    Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.

  • CVE-2022-33216MedFeb 12, 2023
    risk 0.39cvss 6.0epss 0.00

    Transient Denial-of-service in Automotive due to improper input validation while parsing ELF file.

  • CVE-2023-43530MedMay 6, 2024
    risk 0.38cvss 5.9epss 0.00

    Memory corruption in HLOS while checking for the storage type.

  • CVE-2023-33076MedFeb 6, 2024
    risk 0.38cvss 5.9epss 0.00

    Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.

  • CVE-2022-33260MedMar 10, 2023
    risk 0.38cvss 5.9epss 0.00

    Memory corruption due to stack based buffer overflow in core while sending command from USB of large size.

  • CVE-2022-33266MedJan 9, 2023
    risk 0.38cvss 5.9epss 0.00

    Memory corruption in Audio due to integer overflow to buffer overflow while music playback of clips like amr,evrc,qcelp with modified content.

Page 23 of 24