VYPR

Snapdragon 870 5g Mobile Platform Firmware

by Qualcomm

CVEs (100)

  • CVE-2023-28585HigDec 5, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption while loading an ELF segment in TEE Kernel.

  • CVE-2023-28545HigNov 7, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption in TZ Secure OS while loading an app ELF.

  • CVE-2025-59605HigJun 1, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption when processing device identifier strings that exceed the expected maximum length.

  • CVE-2025-59604HigJun 1, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption when running a memory copy operation due to invalid writes caused by a null pointer.

  • CVE-2025-47389HigApr 6, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when buffer copy operation fails due to integer overflow during attestation report generation.

  • CVE-2025-47386HigMar 2, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption while invoking IOCTL calls when concurrent access to shared buffer occurs.

  • CVE-2025-47379HigMar 2, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption when concurrent access to shared buffer occurs due to improper synchronization between assignment and deallocation of buffer resources.

  • CVE-2025-47376HigMar 2, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption when concurrent access to shared buffer occurs during IOCTL calls.

  • CVE-2025-47375HigMar 2, 2026
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while handling different IOCTL calls from the user-space simultaneously.

  • CVE-2024-43052HigDec 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing API calls to NPU with invalid input.

  • CVE-2024-38423HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing GPU page table switch.

  • CVE-2024-38422HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing voice packet with arbitrary data received from ADSP.

  • CVE-2024-38415HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while handling session errors from firmware.

  • CVE-2023-43513HigFeb 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

  • CVE-2023-33120HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio when memory map command is executed consecutively in ADSP.

  • CVE-2023-33118HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.

  • CVE-2023-33117HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-28587HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.

  • CVE-2023-28551HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

Page 2 of 5