VYPR

Snapdragon W5\+ Gen 1 Wearable Firmware

by Qualcomm

CVEs (293)

  • CVE-2024-21463HigApr 1, 2024
    risk 0.47cvss 7.3epss 0.00

    Memory corruption while processing Codec2 during v13k decoder pitch synthesis.

  • CVE-2023-43548HigMar 4, 2024
    risk 0.47cvss 7.3epss 0.00

    Memory corruption while parsing qcp clip with invalid chunk data size.

  • CVE-2023-43519HigFeb 6, 2024
    risk 0.47cvss 7.3epss 0.00

    Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.

  • CVE-2023-43518HigFeb 6, 2024
    risk 0.47cvss 7.3epss 0.00

    Memory corruption in video while parsing invalid mp2 clip.

  • CVE-2026-24090HigJun 1, 2026
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue while processing partition table entries allows unauthorized modification of boot flow.

  • CVE-2025-47366HigFeb 2, 2026
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue when a Trusted Zone with outdated code is triggered by a HLOS providing incorrect input.

  • CVE-2025-21482HigSep 24, 2025
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue while performing RSA PKCS padding decoding.

  • CVE-2024-21462HigJul 1, 2024
    risk 0.46cvss 7.1epss 0.00

    Transient DOS while loading the TA ELF file.

  • CVE-2023-28556HigNov 7, 2023
    risk 0.46cvss 7.1epss 0.00

    Cryptographic issue in HLOS during key management.

  • CVE-2022-40529HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    Memory corruption due to improper access control in kernel while processing a mapping request from root process.

  • CVE-2022-22076HigJun 6, 2023
    risk 0.46cvss 7.1epss 0.00

    information disclosure due to cryptographic issue in Core during RPMB read request.

  • CVE-2025-47334MedJan 7, 2026
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing shared command buffer packet between camera userspace and kernel.

  • CVE-2024-49848MedApr 7, 2025
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing multiple IOCTL calls from HLOS to DSP.

  • CVE-2024-33040MedDec 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access.

  • CVE-2024-33039MedDec 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when PAL client calls PAL service APIs by passing a random value as handle and the handle is not validated by the service.

  • CVE-2024-33036MedDec 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.

  • CVE-2024-33032MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.

  • CVE-2024-23376MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call.

  • CVE-2024-23375MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption during the network scan request.

  • CVE-2024-23374MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file.

Page 12 of 15