VYPR

Qcn9024 Firmware

by Qualcomm

CVEs (455)

  • CVE-2022-33280HigFeb 12, 2023
    risk 0.47cvss 7.3epss 0.00

    Memory corruption due to access of uninitialized pointer in Bluetooth HOST while processing the AVRCP packet.

  • CVE-2021-30272HigJan 3, 2022
    risk 0.47cvss 7.3epss 0.00

    Possible null pointer dereference in thread cache operation handler due to lack of validation of user provided input in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-30271HigJan 3, 2022
    risk 0.47cvss 7.3epss 0.00

    Possible null pointer dereference in trap handler due to lack of thread ID validation before dereferencing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

  • CVE-2021-1909HigSep 9, 2021
    risk 0.47cvss 7.3epss 0.00

    Buffer overflow occurs in trusted applications due to lack of length check of parameters in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon…

  • CVE-2020-11252HigApr 7, 2021
    risk 0.47cvss 7.2epss 0.00

    Trustzone initialization code will disable xPU`s when memory dumps are enabled and lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,…

  • CVE-2025-21422HigJul 8, 2025
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses.

  • CVE-2024-23362HigSep 2, 2024
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue while parsing RSA keys in COBR format.

  • CVE-2024-21462HigJul 1, 2024
    risk 0.46cvss 7.1epss 0.00

    Transient DOS while loading the TA ELF file.

  • CVE-2023-33060HigFeb 6, 2024
    risk 0.46cvss 7.1epss 0.00

    Transient DOS in Core when DDR memory check is called while DDR is not initialized.

  • CVE-2023-33037HigJan 2, 2024
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data.

  • CVE-2023-28556HigNov 7, 2023
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue in HLOS during key management.

  • CVE-2022-40525HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Information disclosure in Linux Networking Firmware due to unauthorized information leak during side channel analysis.

  • CVE-2022-40523HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Information disclosure in Kernel due to indirect branch misprediction.

  • CVE-2022-22076HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    information disclosure due to cryptographic issue in Core during RPMB read request.

  • CVE-2021-30278HigJan 3, 2022
    risk 0.46cvss 7.1epss 0.00

    Improper input validation in TrustZone memory transfer interface can lead to information disclosure in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and…

  • CVE-2020-11250HigJun 9, 2021
    risk 0.46cvss 7.0epss 0.00

    Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon…

  • CVE-2024-33016MedSep 2, 2024
    risk 0.44cvss 6.8epss 0.00

    memory corruption when an invalid firehose patch command is invoked.

  • CVE-2024-21482MedJul 1, 2024
    risk 0.44cvss 6.8epss 0.00

    Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.

  • CVE-2023-33038MedJan 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while receiving a message in Bus Socket Transport Server.

  • CVE-2023-21629MedJul 4, 2023
    risk 0.44cvss 6.8epss 0.00

    Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.

Page 20 of 23