VYPR

Snapdragon 865 5g Mobile Platform Firmware

by Qualcomm

CVEs (248)

  • CVE-2024-23356HigAug 5, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during session sign renewal request calls in HLOS.

  • CVE-2024-23355HigAug 5, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when keymaster operation imports a shared key.

  • CVE-2024-23368HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition.

  • CVE-2024-21465HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing key blob passed by the user.

  • CVE-2023-43542HigJun 3, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.

  • CVE-2024-21476HigMay 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when the channel ID passed by user is not validated and further used.

  • CVE-2024-21475HigMay 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when the payload received from firmware is not as per the expected protocol size.

  • CVE-2023-33115HigApr 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing buffer initialization, when trusted report for certain report types are generated.

  • CVE-2023-43513HigFeb 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

  • CVE-2023-33120HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio when memory map command is executed consecutively in ADSP.

  • CVE-2023-33118HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.

  • CVE-2023-33117HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-28587HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.

  • CVE-2023-28551HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

  • CVE-2023-28550HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in MPP performance while accessing DSM watermark using external memory address.

  • CVE-2023-28546HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in SPS Application while exporting public key in sorter TA.

  • CVE-2023-24850HigOct 3, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in HLOS while importing a cryptographic key into KeyMaster Trusted Application.

  • CVE-2023-28558HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN handler while processing PhyID in Tx status handler.

  • CVE-2023-28557HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.

Page 6 of 13