VYPR

Snapdragon W5\+ Gen 1 Wearable Firmware

by Qualcomm

CVEs (293)

  • CVE-2024-38415HigNov 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while handling session errors from firmware.

  • CVE-2024-38402HigSep 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing IOCTL call for getting group info.

  • CVE-2024-38401HigSep 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing concurrent IOCTL calls.

  • CVE-2024-23356HigAug 5, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption during session sign renewal request calls in HLOS.

  • CVE-2024-23368HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when allocating and accessing an entry in an SMEM partition.

  • CVE-2024-21465HigJul 1, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing key blob passed by the user.

  • CVE-2024-21475HigMay 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when the payload received from firmware is not as per the expected protocol size.

  • CVE-2023-43550HigMar 4, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing a QMI request for allocating memory from a DHMS supported subsystem.

  • CVE-2023-43513HigFeb 6, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

  • CVE-2023-33120HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio when memory map command is executed consecutively in ADSP.

  • CVE-2023-33118HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.

  • CVE-2023-33117HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.

  • CVE-2023-33110HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

  • CVE-2023-33085HigJan 2, 2024
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in wearables while processing data from AON.

  • CVE-2023-33087HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Core while processing RX intent request.

  • CVE-2023-33079HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Audio while running invalid audio recording from ADSP.

  • CVE-2023-33018HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption while using the UIM diag command to get the operators name.

  • CVE-2023-33017HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.

  • CVE-2023-28551HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

  • CVE-2023-28550HigDec 5, 2023
    risk 0.51cvss 7.8epss 0.00

    Memory corruption in MPP performance while accessing DSM watermark using external memory address.

Page 8 of 15