← Back

Sm4350 Firmware

sm4350_firmware

Vendor: Qualcomm • 68 CVEs

CVEs (68)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Qualcomm
77Aqt1000 Firmware
Qca6310 FirmwareQca6320 Firmware+74 more
Nov 21, 2024
Apr 13, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption due to use after free in Modem while modem initialization.
1Qualcomm
114315 5g Iot Modem Firmware
8905 Firmware8909 Firmware+111 more
Nov 21, 2024
Apr 13, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update message.
1Qualcomm
226315 5g Iot Modem Firmware
7wcn785x 1 Firmware8905 Firmware+223 more
Nov 21, 2024
Apr 13, 2023
N/A· v4
6.8 MEDIUM· v3
N/A· v2
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
1Qualcomm
42Ar8035 Firmware
Qca6391 FirmwareQca6595au Firmware+39 more
Nov 21, 2024
Apr 13, 2023
N/A· v4
5.9 MEDIUM· v3
N/A· v2
Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message.
1Qualcomm
219315 5g Iot Modem Firmware
8098 Firmware8909 Firmware+216 more
Nov 21, 2024
Apr 13, 2023
N/A· v4
7.8 HIGH· v3
N/A· v2
Memory corruption due to double free in core while initializing the encryption key.
1Qualcomm
389Apq8009 Firmware
Apq8009w FirmwareApq8017 Firmware+386 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.0 HIGH· v3
4.4 MEDIUM· v2
A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon...Show more
A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon WearablesShow less
1Qualcomm
399Apq8009 Firmware
Apq8009w FirmwareApq8017 Firmware+396 more
Oct 28, 2025
Jun 9, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon...Show more
Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon WearablesShow less
1Qualcomm
236Apq8017 Firmware
Apq8053 FirmwareAqt1000 Firmware+233 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
8.4 HIGH· v3
7.2 HIGH· v2
An improper free of uninitialized memory can occur in DIAG services in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile
1Qualcomm
360Apq8009w Firmware
Apq8017 FirmwareApq8053 Firmware+357 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.0 HIGH· v3
6.9 MEDIUM· v2
Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Sna...Show more
Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
426Apq8009 Firmware
Apq8096au FirmwareAqt1000 Firmware+423 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attribute in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronic...Show more
Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attribute in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
406Apq8009 Firmware
Apq8009w FirmwareApq8017 Firmware+403 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up properly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IO...Show more
Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up properly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon WearablesShow less
1Qualcomm
402Aqt1000 Firmware
Ar8031 FirmwareAr8035 Firmware+399 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consume...Show more
Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
268Aqt1000 Firmware
Pm3003a FirmwarePm4125 Firmware+265 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
Possible heap overflow while parsing NAL header due to lack of check of length of data received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IO...Show more
Possible heap overflow while parsing NAL header due to lack of check of length of data received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon MobileShow less
1Qualcomm
287Aqt1000 Firmware
Ar8031 FirmwareAr8035 Firmware+284 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Trusted APPS to overwrite the CPZ memory of another use-case as TZ only checks the physical address not overlapping with its memory and its RoT memory in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snap...Show more
Trusted APPS to overwrite the CPZ memory of another use-case as TZ only checks the physical address not overlapping with its memory and its RoT memory in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
255Aqt1000 Firmware
Ar8035 FirmwarePm3003a Firmware+252 more
Nov 21, 2024
Jun 9, 2021
N/A· v4
7.8 HIGH· v3
7.2 HIGH· v2
Memory corruption due to buffer overflow while copying the message provided by HLOS into buffer without validating the length of buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer...Show more
Memory corruption due to buffer overflow while copying the message provided by HLOS into buffer without validating the length of buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
315Aqt1000 Firmware
Ar8031 FirmwareAr8035 Firmware+312 more
Nov 21, 2024
Feb 22, 2021
N/A· v4
6.0 MEDIUM· v3
3.6 LOW· v2
Out of bound read access in hypervisor due to an invalid read access attempt by passing invalid addresses in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IO...Show more
Out of bound read access in hypervisor due to an invalid read access attempt by passing invalid addresses in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
532Apq8009 Firmware
Apq8017 FirmwareApq8053 Firmware+529 more
Nov 21, 2024
Feb 22, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT...Show more
Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
347Aqt1000 Firmware
Ar8031 FirmwareAr8035 Firmware+344 more
Nov 21, 2024
Feb 22, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to information disclosure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer...Show more
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to information disclosure. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
412Aqt1000 Firmware
Ar7420 FirmwareAr8031 Firmware+409 more
Nov 21, 2024
Feb 22, 2021
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Denial of service while processing fine timing measurement request (FTMR) frame with reserved bits set in the FTM parameter IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit...Show more
Denial of service while processing fine timing measurement request (FTMR) frame with reserved bits set in the FTM parameter IE due to improper error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less
1Qualcomm
377Aqt1000 Firmware
Ar8031 FirmwareAr8035 Firmware+374 more
Nov 21, 2024
Feb 22, 2021
N/A· v4
7.5 HIGH· v3
7.8 HIGH· v2
Possible denial of service while handling host WMI command due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT...Show more
Possible denial of service while handling host WMI command due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and NetworkingShow less