VYPR

Qcn6023 Firmware

by Qualcomm

CVEs (252)

  • CVE-2024-45569CriFeb 3, 2025
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while parsing the ML IE due to invalid frame content.

  • CVE-2024-33066CriOct 7, 2024
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while redirecting log file to any file location with any file name.

  • CVE-2024-21473CriApr 1, 2024
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while redirecting log file to any file location with any file name.

  • CVE-2023-43553CriMar 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.

  • CVE-2023-43552CriMar 4, 2024
    risk 0.64cvss 9.8epss 0.00

    Memory corruption while processing MBSSID beacon containing several subelement IE.

  • CVE-2023-33083CriDec 5, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption in WLAN Host while processing RRM beacon on the AP.

  • CVE-2023-33082CriDec 5, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.

  • CVE-2023-33045CriNov 7, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.

  • CVE-2023-33028CriOct 3, 2023
    risk 0.64cvss 9.8epss 0.01

    Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.

  • CVE-2022-40514CriFeb 12, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.

  • CVE-2022-33279CriFeb 12, 2023
    risk 0.64cvss 9.8epss 0.00

    Memory corruption due to stack based buffer overflow in WLAN having invalid WNM frame length.

  • CVE-2022-25748CriOct 19, 2022
    risk 0.64cvss 9.8epss 0.00

    Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT,…

  • CVE-2021-35104CriJun 14, 2022
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow due to improper parsing of headers while playing the FLAC audio clip in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired…

  • CVE-2021-30351CriJan 3, 2022
    risk 0.64cvss 9.8epss 0.04

    An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice &…

  • CVE-2021-1976CriSep 17, 2021
    risk 0.64cvss 9.8epss 0.01

    A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired…

  • CVE-2021-1972CriSep 8, 2021
    risk 0.64cvss 9.8epss 0.01

    Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables,…

  • CVE-2021-1965CriJul 13, 2021
    risk 0.64cvss 9.8epss 0.03

    Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking

  • CVE-2020-11134CriJun 9, 2021
    risk 0.64cvss 9.8epss 0.01

    Possible stack out of bound write might happen due to time bitmap length and bit duration fields of the attributes like NAN ranging setup attribute inside a NAN management frame are not Properly validated in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity,…

  • CVE-2023-33063HigKEVDec 5, 2023
    risk 0.63cvss 7.8epss 0.01

    Memory corruption in DSP Services during a remote call from HLOS to DSP.

  • CVE-2023-28578CriMar 4, 2024
    risk 0.60cvss 9.3epss 0.00

    Memory corruption in Core Services while executing the command for removing a single event listener.

Page 1 of 13

VYPR — Vulnerability Intelligence