VYPR

Snapdragon Xr2\+ Gen 1 Firmware

by Qualcomm

CVEs (347)

  • CVE-2024-33037MedDec 2, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.

  • CVE-2024-23357MedAug 5, 2024
    risk 0.40cvss 6.2epss 0.00

    Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.

  • CVE-2023-43528MedMay 6, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.

  • CVE-2023-33065MedFeb 6, 2024
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in Audio while accessing AVCS services from ADSP payload.

  • CVE-2023-28554MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.

  • CVE-2023-28553MedNov 7, 2023
    risk 0.40cvss 6.1epss 0.00

    Information Disclosure in WLAN Host when processing WMI event command.

  • CVE-2023-28571MedOct 3, 2023
    risk 0.40cvss 6.1epss 0.00

    Information disclosure in WLAN HOST while processing the WLAN scan descriptor list during roaming scan.

  • CVE-2023-21624MedJul 4, 2023
    risk 0.40cvss 6.2epss 0.00

    Information disclosure in DSP Services while loading dynamic module.

  • CVE-2022-40533MedJun 6, 2023
    risk 0.40cvss 6.2epss 0.00

    Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.

  • CVE-2023-28586MedDec 5, 2023
    risk 0.39cvss 6.0epss 0.00

    Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.

  • CVE-2023-43530MedMay 6, 2024
    risk 0.38cvss 5.9epss 0.00

    Memory corruption in HLOS while checking for the storage type.

  • CVE-2023-33076MedFeb 6, 2024
    risk 0.38cvss 5.9epss 0.00

    Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.

  • CVE-2022-33296MedApr 13, 2023
    risk 0.38cvss 5.9epss 0.00

    Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update message.

  • CVE-2025-59609MedJun 1, 2026
    risk 0.36cvss 5.5epss 0.00

    Information Disclosure when processing advertisement frames with malformed MBSSID elements of insufficient length.

  • CVE-2025-47369MedJan 7, 2026
    risk 0.36cvss 5.5epss 0.00

    Information disclosure when a weak hashed value is returned to userland code in response to a IOCTL call to obtain a session ID.

  • CVE-2025-47330MedJan 7, 2026
    risk 0.36cvss 5.5epss 0.00

    Transient DOS while parsing video packets received from the video firmware.

  • CVE-2024-43046MedApr 7, 2025
    risk 0.36cvss 5.5epss 0.00

    There may be information disclosure during memory re-allocation in TZ Secure OS.

  • CVE-2024-43051MedMar 3, 2025
    risk 0.36cvss 5.5epss 0.00

    Information disclosure while deriving keys for a session for any Widevine use case.

  • CVE-2024-33043MedSep 2, 2024
    risk 0.36cvss 5.5epss 0.00

    Transient DOS while handling PS event when Program Service name length offset value is set to 255.

  • CVE-2023-33111MedApr 1, 2024
    risk 0.36cvss 5.5epss 0.00

    Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command.

Page 17 of 18