VYPR

Snapdragon X70 Modem Rf System Firmware

by Qualcomm

CVEs (74)

  • CVE-2023-28585HigDec 5, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption while loading an ELF segment in TEE Kernel.

  • CVE-2023-28545HigNov 7, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory corruption in TZ Secure OS while loading an app ELF.

  • CVE-2023-24849HigOct 3, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in data Modem while parsing an FMTP line in an SDP message.

  • CVE-2023-24848HigOct 3, 2023
    risk 0.53cvss 8.2epss 0.00

    Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.

  • CVE-2023-22385HigOct 3, 2023
    risk 0.53cvss 8.2epss 0.00

    Memory Corruption in Data Modem while making a MO call or MT VOLTE call.

  • CVE-2025-47323HigDec 18, 2025
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while routing GPR packets between user and root when handling large data packet.

  • CVE-2024-21465HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing key blob passed by the user.

  • CVE-2023-33046HigFeb 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-33018HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while using the UIM diag command to get the operators name.

  • CVE-2023-28551HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

  • CVE-2023-28550HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in MPP performance while accessing DSM watermark using external memory address.

  • CVE-2022-33264HigJun 6, 2023
    risk 0.51cvss 7.9epss 0.00

    Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.

  • CVE-2024-45549HigApr 7, 2025
    risk 0.50cvss 7.7epss 0.00

    Information disclosure while creating MQ channels.

  • CVE-2026-24084HigAug 4, 2026
    risk 0.49cvss 7.5epss 0.00

    Weak configuration when UE does not verify the consistency of its additional security capabilities with the replayed capabilities.

  • CVE-2025-21477HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing CCCH data when NW sends data with invalid length.

  • CVE-2024-23385HigNov 4, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS as modem reset occurs when an unexpected MAC RAR (with invalid PDU length) is seen at UE.

  • CVE-2024-23353HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.

  • CVE-2024-23352HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA.

  • CVE-2023-33057HigFeb 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS in Multi-Mode Call Processor while processing UE policy container.