VYPR

Snapdragon 870 5g Mobile Platform Firmware

by Qualcomm

CVEs (100)

  • CVE-2023-33098HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing WPA IES, when it is passed with length more than expected size.

  • CVE-2023-33089HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when processing a NULL buffer while parsing WLAN vdev.

  • CVE-2023-28588HigDec 5, 2023
    risk 0.49cvss 7.5epss 0.01

    Transient DOS in Bluetooth Host while rfc slot allocation.

  • CVE-2026-24091HigJun 1, 2026
    risk 0.47cvss 7.2epss 0.00

    Memory corruption while processing fastboot commands with improperly formatted input.

  • CVE-2026-24085HigJun 1, 2026
    risk 0.47cvss 7.2epss 0.00

    Memory Corruption when processing display command line information due to improper initialization of a variable.

  • CVE-2025-47383HigMar 2, 2026
    risk 0.47cvss 7.2epss 0.00

    Weak configuration may lead to cryptographic issue when a VoWiFi call is triggered from UE.

  • CVE-2023-43519HigFeb 6, 2024
    risk 0.47cvss 7.3epss 0.00

    Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.

  • CVE-2023-43518HigFeb 6, 2024
    risk 0.47cvss 7.3epss 0.00

    Memory corruption in video while parsing invalid mp2 clip.

  • CVE-2025-47378HigMar 2, 2026
    risk 0.46cvss 7.1epss 0.00

    Cryptographic Issue when a shared VM reference allows HLOS to boot loader and access cert chain.

  • CVE-2023-33037HigJan 2, 2024
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data.

  • CVE-2023-33036HigJan 2, 2024
    risk 0.46cvss 7.1epss 0.00

    Permanent DOS in Hypervisor while untrusted VM without PSCI support makes a PSCI call.

  • CVE-2023-28556HigNov 7, 2023
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue in HLOS during key management.

  • CVE-2024-33053MedDec 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when multiple threads try to unregister the CVP buffer at the same time.

  • CVE-2024-33040MedDec 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.

  • CVE-2024-33036MedDec 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.

  • CVE-2024-33032MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.

  • CVE-2023-33077MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in HLOS while converting from authorization token to HIDL vector.

  • CVE-2023-33069MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing the calibration data returned from ACDB loader.

  • CVE-2023-33068MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing IIR config data from AFE calibration block.

  • CVE-2023-33067MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.

Page 4 of 5