Sdx65m Firmware
by Qualcomm
CVEs (97)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-45569 | Cri | 0.64 | 9.8 | 0.00 | Feb 3, 2025 | Memory corruption while parsing the ML IE due to invalid frame content. | ||
| CVE-2024-33066 | Cri | 0.64 | 9.8 | 0.01 | Oct 7, 2024 | Memory corruption while redirecting log file to any file location with any file name. | ||
| CVE-2024-21473 | Cri | 0.64 | 9.8 | 0.01 | Apr 1, 2024 | Memory corruption while redirecting log file to any file location with any file name. | ||
| CVE-2023-43553 | Cri | 0.64 | 9.8 | 0.00 | Mar 4, 2024 | Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE. | ||
| CVE-2023-43552 | Cri | 0.64 | 9.8 | 0.00 | Mar 4, 2024 | Memory corruption while processing MBSSID beacon containing several subelement IE. | ||
| CVE-2023-33083 | Cri | 0.64 | 9.8 | 0.01 | Dec 5, 2023 | Memory corruption in WLAN Host while processing RRM beacon on the AP. | ||
| CVE-2023-33082 | Cri | 0.64 | 9.8 | 0.01 | Dec 5, 2023 | Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE. | ||
| CVE-2023-33045 | Cri | 0.64 | 9.8 | 0.00 | Nov 7, 2023 | Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute. | ||
| CVE-2023-33028 | Cri | 0.64 | 9.8 | 0.01 | Oct 3, 2023 | Memory corruption in WLAN Firmware while doing a memory copy of pmk cache. | ||
| CVE-2026-25289 | Cri | 0.62 | 9.6 | 0.00 | Aug 4, 2026 | Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values. | ||
| CVE-2023-33072 | Cri | 0.60 | 9.3 | 0.00 | Feb 6, 2024 | Memory corruption in Core while processing control functions. | ||
| CVE-2024-33056 | Hig | 0.55 | 8.4 | 0.00 | Dec 2, 2024 | Memory corruption when allocating and accessing an entry in an SMEM partition continuously. | ||
| CVE-2023-43549 | Hig | 0.55 | 8.4 | 0.00 | Mar 4, 2024 | Memory corruption while processing TPC target power table in FTM TPC. | ||
| CVE-2023-33088 | Hig | 0.55 | 8.4 | 0.00 | Dec 5, 2023 | Memory corruption when processing cmd parameters while parsing vdev. | ||
| CVE-2023-33053 | Hig | 0.55 | 8.4 | 0.00 | Dec 5, 2023 | Memory corruption in Kernel while parsing metadata. | ||
| CVE-2023-24852 | Hig | 0.55 | 8.4 | 0.00 | Nov 7, 2023 | Memory Corruption in Core due to secure memory access by user while loading modem image. | ||
| CVE-2022-40531 | Hig | 0.55 | 8.4 | 0.00 | Mar 10, 2023 | Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message. | ||
| CVE-2022-40530 | Hig | 0.55 | 8.4 | 0.00 | Mar 10, 2023 | Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase. | ||
| CVE-2024-49839 | Hig | 0.53 | 8.2 | 0.00 | Feb 3, 2025 | Memory corruption during management frame processing due to mismatch in T2LM info element. | ||
| CVE-2024-33073 | Hig | 0.53 | 8.2 | 0.00 | Oct 7, 2024 | Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. |
- risk 0.64cvss 9.8epss 0.00
Memory corruption while parsing the ML IE due to invalid frame content.
- risk 0.64cvss 9.8epss 0.01
Memory corruption while redirecting log file to any file location with any file name.
- risk 0.64cvss 9.8epss 0.01
Memory corruption while redirecting log file to any file location with any file name.
- risk 0.64cvss 9.8epss 0.00
Memory corruption while parsing beacon/probe response frame when AP sends more supported links in MLIE.
- risk 0.64cvss 9.8epss 0.00
Memory corruption while processing MBSSID beacon containing several subelement IE.
- risk 0.64cvss 9.8epss 0.01
Memory corruption in WLAN Host while processing RRM beacon on the AP.
- risk 0.64cvss 9.8epss 0.01
Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
- risk 0.64cvss 9.8epss 0.00
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
- risk 0.64cvss 9.8epss 0.01
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
- risk 0.62cvss 9.6epss 0.00
Memory Corruption when processing Device Capability Extended attributes in certain NAN Service Discovery Frames with invalid length values.
- risk 0.60cvss 9.3epss 0.00
Memory corruption in Core while processing control functions.
- risk 0.55cvss 8.4epss 0.00
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
- risk 0.55cvss 8.4epss 0.00
Memory corruption while processing TPC target power table in FTM TPC.
- risk 0.55cvss 8.4epss 0.00
Memory corruption when processing cmd parameters while parsing vdev.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in Kernel while parsing metadata.
- risk 0.55cvss 8.4epss 0.00
Memory Corruption in Core due to secure memory access by user while loading modem image.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
- risk 0.55cvss 8.4epss 0.00
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
- risk 0.53cvss 8.2epss 0.00
Memory corruption during management frame processing due to mismatch in T2LM info element.
- risk 0.53cvss 8.2epss 0.00
Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
Page 1 of 5