VYPR

Vendor CVEs

Qualcomm

All CVEs

3,001 total · sorted by risk
  • CVE-2024-33031MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing the update SIM PB records request.

  • CVE-2024-33030MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while parsing IPC frequency table parameters for LPLH that has size greater than expected size.

  • CVE-2024-33029MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while handling the PDR in driver for getting the remote heap maps.

  • CVE-2024-23386MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    memory corruption when WiFi display APIs are invoked with large random inputs.

  • CVE-2024-23377MedNov 4, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while invoking IOCTL command from user-space, when a user modifies the original packet size of the command after system properties have been already sent to the EVA driver.

  • CVE-2024-23379MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario.

  • CVE-2024-23378MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record.

  • CVE-2024-23376MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call.

  • CVE-2024-23375MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption during the network scan request.

  • CVE-2024-23374MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file.

  • CVE-2024-23370MedOct 7, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when a process invokes IOCTL calls from user-space to create a HAB virtual channel and another process invokes IOCTL calls to destroy the same.

  • CVE-2024-33016MedSep 2, 2024
    risk 0.44cvss 6.8epss 0.00

    memory corruption when an invalid firehose patch command is invoked.

  • CVE-2024-21482MedJul 1, 2024
    risk 0.44cvss 6.8epss 0.00

    Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.

  • CVE-2023-43545MedJun 3, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when more scan frequency list or channels are sent from the user space.

  • CVE-2023-43544MedJun 3, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when IPC callback handle is used after it has been released during register callback by another thread.

  • CVE-2023-43543MedJun 3, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio during a playback or a recording due to race condition between allocation and deallocation of graph object.

  • CVE-2023-43527MedMay 6, 2024
    risk 0.44cvss 6.8epss 0.00

    Information disclosure while parsing dts header atom in Video.

  • CVE-2023-43526MedMay 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while querying module parameters from Listen Sound model client in kernel from user space.

  • CVE-2023-43525MedMay 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while copying the sound model data from user to kernel buffer during sound model register.

  • CVE-2023-43524MedMay 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when the bandpass filter order received from AHAL is not within the expected range.

  • CVE-2023-43521MedMay 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when multiple listeners are being registered with the same file descriptor.

  • CVE-2023-33077MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in HLOS while converting from authorization token to HIDL vector.

  • CVE-2023-33069MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing the calibration data returned from ACDB loader.

  • CVE-2023-33068MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing IIR config data from AFE calibration block.

  • CVE-2023-33067MedFeb 6, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.

  • CVE-2023-33038MedJan 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while receiving a message in Bus Socket Transport Server.

  • CVE-2023-28583MedJan 2, 2024
    risk 0.44cvss 6.7epss 0.00

    Memory corruption when IPv6 prefix timer object`s lifetime expires which are created while Netmgr daemon gets an IPv6 address.

  • CVE-2023-33024MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while sending SMS from AP firmware.

  • CVE-2023-28580MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in WLAN Host while setting the PMK length in PMK length in internal cache.

  • CVE-2023-28579MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in WLAN Host while deserializing the input PMK bytes without checking the input PMK length.

  • CVE-2023-22668MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in Audio while invoking IOCTLs calls from the user-space.

  • CVE-2023-22383MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in camera while installing a fd for a particular DMA buffer.

  • CVE-2023-21634MedDec 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.

  • CVE-2023-28570MedNov 7, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption while processing audio effects.

  • CVE-2023-22384MedOct 3, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in VR Service while sending data using Fast Message Queue (FMQ).

  • CVE-2023-21663MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption while accessing metadata in Display.

  • CVE-2023-21655MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while validating and mapping metadata.

  • CVE-2023-21654MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio during playback session with audio effects enabled.

  • CVE-2023-21644MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.

  • CVE-2023-21636MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption due to improper validation of array index in Linux while updating adn record.

  • CVE-2022-40524MedSep 5, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.

  • CVE-2023-28577MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel…

  • CVE-2023-28575MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.

  • CVE-2023-21650MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length.

  • CVE-2023-21649MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in WLAN while running doDriverCmd for an unspecific command.

  • CVE-2023-21648MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in RIL while trying to send apdu packet.

  • CVE-2023-21627MedAug 8, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Trusted Execution Environment while calling service API with invalid address.

  • CVE-2023-21640MedJul 4, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Linux when the file upload API is called with parameters having large buffer.

  • CVE-2023-21639MedJul 4, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client.

  • CVE-2023-21638MedJul 4, 2023
    risk 0.44cvss 6.7epss 0.00

    Memory corruption in Video while calling APIs with different instance ID than the one received in initialization.

Page 50 of 61