VYPR

Qcn9100 Firmware

by Qualcomm

CVEs (213)

  • CVE-2021-35069HigFeb 11, 2022
    risk 0.51cvss 7.8epss 0.00

    Improper validation of data length received from DMA buffer can lead to memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired…

  • CVE-2021-30303HigJan 3, 2022
    risk 0.51cvss 7.8epss 0.00

    Possible buffer overflow due to lack of buffer length check when segmented WMI command is received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2020-11235HigJun 9, 2021
    risk 0.51cvss 7.8epss 0.00

    Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon…

  • CVE-2021-1915HigMay 7, 2021
    risk 0.51cvss 7.8epss 0.00

    Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile,…

  • CVE-2020-11289HigMay 7, 2021
    risk 0.51cvss 7.8epss 0.00

    Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon…

  • CVE-2020-11204HigFeb 22, 2021
    risk 0.51cvss 7.8epss 0.00

    Possible memory corruption and information leakage in sub-system due to lack of check for validity and boundary compliance for parameters that are read from shared MSG RAM in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon…

  • CVE-2026-21367HigApr 6, 2026
    risk 0.49cvss 7.6epss 0.00

    Transient DOS when processing nonstandard FILS Discovery Frames with out-of-range action sizes during initial scans.

  • CVE-2025-47326HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling command data during power control processing.

  • CVE-2025-47318HigSep 24, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the EPTM test control message to get the test pattern.

  • CVE-2025-27073HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while creating NDP instance.

  • CVE-2025-27066HigAug 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing an ANQP message.

  • CVE-2025-27057HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while handling beacon frames with invalid IE header length.

  • CVE-2025-21446HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests.

  • CVE-2025-21463HigJun 3, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing the EHT operation IE in the received beacon frame.

  • CVE-2025-21448HigApr 7, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while parsing SSID in action frames.

  • CVE-2025-21435HigApr 7, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while parsing extended IE in beacon.

  • CVE-2024-45558HigJan 6, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.

  • CVE-2024-33049HigOct 7, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing noninheritance IE of Extension element when length of IE is 2 of beacon frame.

  • CVE-2024-33057HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.

  • CVE-2024-33050HigSep 2, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.

Page 5 of 11