CVEs (424)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 242315 5g Iot Modem Firmware 9205 Lte Modem Firmware9206 Lte Modem Firmware+239 moreNov 21, 2024 Jun 6, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to double free in Core while mapping HLOS address to the list. |
1Qualcomm 110Aqt1000 Firmware Qam8255p FirmwareQam8295p Firmware+107 moreNov 21, 2024 Jun 6, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed. |
1Qualcomm 49Aqt1000 Firmware Qam8255p FirmwareQca6420 Firmware+46 moreNov 21, 2024 Jun 6, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to use after free in Core when multiple DCI clients register and deregister. |
1Qualcomm 348315 5g Iot Modem Firmware 8953pro Firmware9205 Lte Modem Firmware+345 moreNov 21, 2024 Jun 6, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 information disclosure due to cryptographic issue in Core during RPMB read request. |
1Qualcomm 99Aqt1000 Firmware Ar8035 FirmwareQam8295p Firmware+96 moreNov 21, 2024 May 2, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. |
1Qualcomm 55Ar8035 Firmware Qam8295p FirmwareQca6390 Firmware+52 moreNov 21, 2024 May 2, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exporting a shared key. |
1Qualcomm 353315 5g Iot Modem Firmware 8905 Firmware8909 Firmware+350 moreNov 21, 2024 Apr 13, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. |
1Qualcomm 128315 5g Iot Modem Firmware Aqt1000 FirmwareAr8035 Firmware+125 moreNov 21, 2024 Apr 13, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information. |
1Qualcomm 101Aqt1000 Firmware Ar8035 FirmwareQam8295p Firmware+98 moreNov 21, 2024 Apr 13, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. |
1Qualcomm 16Sd888 5g Firmware Sd 8 Gen1 5g FirmwareSw5100 Firmware+13 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to buffer copy without checking the size of input while loading firmware in Linux Kernel. |
1Qualcomm 162Apq8009 Firmware Apq8009w FirmwareApq8017 Firmware+159 moreNov 21, 2024 Mar 10, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response. |
1Qualcomm 284Apq8009 Firmware Apq8017 FirmwareApq8076 Firmware+281 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message. |
1Qualcomm 189Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+186 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase. |
1Qualcomm 99Ar8035 Firmware Csr8811 FirmwareIpq5010 Firmware+96 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS due to reachable assertion in WLAN while processing PEER ID populated by TQM. |
1Qualcomm 159Apq8009 Firmware Apq8009w FirmwareApq8052 Firmware+156 moreNov 21, 2024 Mar 10, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms. |
1Qualcomm 65Csr8811 Firmware Ipq5010 FirmwareIpq5018 Firmware+62 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS due to buffer over-read in WLAN Firmware while parsing secure FTMR frame with size lesser than 39 Bytes. |
1Qualcomm 123Aqt1000 Firmware Ar8035 FirmwareCsra6620 Firmware+120 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to buffer copy without checking the size of input in HLOS when input message size is larger than the buffer capacity. |
1Qualcomm 49Ar8035 Firmware Qca6390 FirmwareQca6391 Firmware+46 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in modem due to reachable assertion. |
1Qualcomm 46Aqt1000 Firmware Qam8295p FirmwareQca6420 Firmware+43 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to stack based buffer overflow in core while sending command from USB of large size. |
1Qualcomm 140Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+137 moreNov 21, 2024 Mar 10, 2023 N/A· v4 7.0 HIGH· v3 N/A· v2 Memory corruption in Core due to time-of-check time-of-use race condition during dump collection in trust zone. |