CVEs (988)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Qualcomm 38Aqt1000 Firmware Qca6420 FirmwareQca6430 Firmware+35 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption while accessing metadata in Display. |
1Qualcomm 136Aqt1000 Firmware Ar8035 FirmwareFsm10056 Firmware+133 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Core Platform while printing the response buffer in log. |
1Qualcomm 56Apq8096au Firmware Aqt1000 FirmwareMdm9150 Firmware+53 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in Audio during playback session with audio effects enabled. |
1Qualcomm 54Ar8035 Firmware Qca6390 FirmwareQca6391 Firmware+51 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in Modem while processing invalid System Information Block 1. |
1Qualcomm 51Aqt1000 Firmware Qca6390 FirmwareQca6391 Firmware+48 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request. |
1Qualcomm 51Aqt1000 Firmware Qca6390 FirmwareQca6391 Firmware+48 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption due to improper validation of array index in Linux while updating adn record. |
1Qualcomm 38Aqt1000 Firmware Qca6390 FirmwareQca6391 Firmware+35 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service. |
1Qualcomm 259315 5g Iot Modem Firmware Apq5053 Aa FirmwareAqt1000 Firmware+256 moreNov 21, 2024 Sep 5, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range. |
1Qualcomm 45Aqt1000 Firmware Qam8295p FirmwareQca6390 Firmware+42 moreNov 21, 2024 Sep 5, 2023 N/A· v4 5.5 MEDIUM· v3 N/A· v2 Information disclosure in Automotive multimedia due to buffer over-read. |
1Qualcomm 30Fastconnect 6800 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+27 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEAS...Show more |
1Qualcomm 30Fastconnect 6800 Firmware Fastconnect 6900 FirmwareFastconnect 7800 Firmware+27 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.0 HIGH· v3 N/A· v2 The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel accesses it. In other words, user mode may race and modify the packet header (e.g. header.count), caus...Show more |
1Qualcomm 59205 Firmware 215 FirmwareAqt1000 Firmware+56 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it. |
1Qualcomm 71Ar8035 Firmware Mdm9628 FirmwareQam8295p Firmware+68 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 Transient DOS in Audio while remapping channel buffer in media codec decoding. |
1Qualcomm 183315 5g Iot Modem Firmware 8098 Firmware8998 Firmware+180 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption while allocating memory in COmxApeDec module in Audio. |
1Qualcomm 172Apq8009 Firmware Apq8017 FirmwareApq8096au Firmware+169 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption in Audio while playing amrwbplus clips with modified content. |
1Qualcomm 120Aqt1000 Firmware Ar8035 FirmwareCsra6620 Firmware+117 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.1 HIGH· v3 N/A· v2 Cryptographic issue in HLOS as derived keys used to encrypt/decrypt information is present on stack after use. |
1Qualcomm 140Aqt1000 Firmware Ar8031 FirmwareAr8035 Firmware+137 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE. |
1Qualcomm 51Aqt1000 Firmware Csrb31024 FirmwareQam8295p Firmware+48 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length. |
1Qualcomm 65Apq8096au Firmware Aqt1000 FirmwareMdm9628 Firmware+62 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in WLAN while running doDriverCmd for an unspecific command. |
1Qualcomm 34Aqt1000 Firmware Qca6391 FirmwareQca6420 Firmware+31 moreNov 21, 2024 Aug 8, 2023 N/A· v4 7.8 HIGH· v3 N/A· v2 Memory corruption in RIL while trying to send apdu packet. |