VYPR

Snapdragon 6 Gen 3 Mobile Platform Firmware

by Qualcomm

CVEs (129)

  • CVE-2024-38423HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing GPU page table switch.

  • CVE-2024-38422HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing voice packet with arbitrary data received from ADSP.

  • CVE-2024-33052HigSep 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when user provides data for FM HCI command control operations.

  • CVE-2023-43542HigJun 3, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.

  • CVE-2024-21476HigMay 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when the channel ID passed by user is not validated and further used.

  • CVE-2024-21475HigMay 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when the payload received from firmware is not as per the expected protocol size.

  • CVE-2023-33115HigApr 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.

  • CVE-2023-43513HigFeb 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-28546HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in SPS Application while exporting public key in sorter TA.

  • CVE-2023-33059HigNov 7, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio while processing the VOC packet data from ADSP.

  • CVE-2023-24850HigOct 3, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in HLOS while importing a cryptographic key into KeyMaster Trusted Application.

  • CVE-2022-33264HigJun 6, 2023
    risk 0.51cvss 7.9epss 0.00

    Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.

  • CVE-2026-25292HigAug 4, 2026
    risk 0.49cvss 7.6epss 0.00

    Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.

  • CVE-2026-24084HigAug 4, 2026
    risk 0.49cvss 7.5epss 0.00

    Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.

  • CVE-2026-21381HigApr 6, 2026
    risk 0.49cvss 7.6epss 0.00

    Transient DOS when receiving a service data frame with excessive length during device matching over a neighborhood awareness network protocol connection.

  • CVE-2026-21367HigApr 6, 2026
    risk 0.49cvss 7.6epss 0.00

    Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.

  • CVE-2025-21454HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing received beacon frame.

  • CVE-2025-21449HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while processing malformed length field in SSID IEs.

  • CVE-2025-21446HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.

Page 4 of 7