VYPR

Snapdragon 685 4g Mobile Firmware

by Qualcomm

CVEs (139)

  • CVE-2023-33117HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-33085HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in wearables while processing data from AON.

  • CVE-2023-28587HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in BT controller while parsing debug commands with specific sub-opcodes at HCI interface level.

  • CVE-2023-28551HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

  • CVE-2023-28550HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in MPP performance while accessing DSM watermark using external memory address.

  • CVE-2023-28546HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory Corruption in SPS Application while exporting public key in sorter TA.

  • CVE-2023-28559HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.

  • CVE-2023-28558HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN handler while processing PhyID in Tx status handler.

  • CVE-2023-28557HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.

  • CVE-2023-28544HigSep 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers.

  • CVE-2026-25292HigAug 4, 2026
    risk 0.49cvss 7.6epss 0.00

    Memory Corruption when processing untrusted user input in the fastboot command handler for audio framework configuration.

  • CVE-2025-21454HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing received beacon frame.

  • CVE-2025-21449HigJul 8, 2025
    risk 0.49cvss 7.5epss 0.00

    Transient DOS may occur while processing malformed length field in SSID IEs.

  • CVE-2024-33015HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.

  • CVE-2024-33014HigAug 5, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing ESP IE from beacon/probe response frame.

  • CVE-2024-21477HigMay 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parsing a protected 802.11az Fine Time Measurement (FTM) frame.

  • CVE-2023-43529HigMay 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing IKEv2 Informational request messages, when a malformed fragment packet is received.

  • CVE-2023-33086HigMar 4, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while processing multiple IKEV2 Informational Request to device from IPSEC server with different identifiers.

  • CVE-2023-43536HigFeb 6, 2024
    risk 0.49cvss 7.5epss 0.00

    Transient DOS while parse fils IE with length equal to 1.

Page 5 of 7