Filtered by vendor Qualcomm
Subscriptions
Filtered by product Sdx55 Firmware
Subscriptions
Total
789 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2024-33013 | 1 Qualcomm | 169 Ar8035 Firmware, Csr8811 Firmware, Fastconnect 6700 Firmware and 166 more | 2024-08-06 | 7.5 High |
Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length. | ||||
CVE-2024-23353 | 1 Qualcomm | 212 315 5g Iot Modem Firmware, 9205 Lte Modem Firmware, 9206 Lte Modem Firmware and 209 more | 2024-08-06 | 7.5 High |
Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI. | ||||
CVE-2024-33027 | 1 Qualcomm | 84 315 5g Iot Modem Firmware, Aqt1000 Firmware, Ar8031 Firmware and 81 more | 2024-08-06 | 8.4 High |
Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table. | ||||
CVE-2024-33024 | 1 Qualcomm | 178 Ar8035 Firmware, Csr8811 Firmware, Fastconnect 6700 Firmware and 175 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length. | ||||
CVE-2024-33011 | 1 Qualcomm | 240 Ar8035 Firmware, Ar9380 Firmware, Csr8811 Firmware and 237 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero. | ||||
CVE-2024-33025 | 1 Qualcomm | 166 Csr8811 Firmware, Fastconnect 6800 Firmware, Fastconnect 6900 Firmware and 163 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE. | ||||
CVE-2024-33012 | 1 Qualcomm | 240 Ar8035 Firmware, Ar9380 Firmware, Csr8811 Firmware and 237 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon. | ||||
CVE-2024-33018 | 1 Qualcomm | 150 Ar8035 Firmware, Csr8811 Firmware, Fastconnect 6700 Firmware and 147 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing the received TID-to-link mapping element of the TID-to-link mapping action frame. | ||||
CVE-2024-33019 | 1 Qualcomm | 148 Ar8035 Firmware, Csr8811 Firmware, Fastconnect 6700 Firmware and 145 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing the received TID-to-link mapping action frame. | ||||
CVE-2024-23352 | 1 Qualcomm | 92 315 5g Iot Modem Firmware, Ar8035 Firmware, Fastconnect 6200 Firmware and 89 more | 2024-08-06 | 7.5 High |
Transient DOS when NAS receives ODAC criteria of length 1 and type 1 in registration accept OTA. | ||||
CVE-2024-33014 | 1 Qualcomm | 304 315 5g Iot Modem Firmware, Apq8064au Firmware, Aqt1000 Firmware and 301 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing ESP IE from beacon/probe response frame. | ||||
CVE-2024-33015 | 1 Qualcomm | 190 Ar8035 Firmware, Csr8811 Firmware, Fastconnect 6200 Firmware and 187 more | 2024-08-06 | 7.5 High |
Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report. | ||||
CVE-2018-13916 | 1 Qualcomm | 110 Apq8009, Apq8009 Firmware, Apq8017 and 107 more | 2024-08-05 | 7.8 High |
Out-of-bounds memory access in Qurt kernel function when using the identifier to access Qurt kernel buffer to retrieve thread data. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8017, APQ8053, APQ8096, APQ8096AU, APQ8098, IPQ8074, MDM9150, MDM9206, MDM9607, MDM9635M, MDM9640, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8976, MSM8996, MSM8996AU, MSM8998, Nicobar, QCA8081, QCM2150, QCN7605, QCS404, QCS405, QCS605, QM215, SC8180X, SDA660, SDA845, SDM429, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX20, SDX55, SM8150, SM8250, Snapdragon_High_Med_2016, SXR1130, SXR2130 | ||||
CVE-2018-11980 | 1 Qualcomm | 58 Apq8009, Apq8009 Firmware, Apq8017 and 55 more | 2024-08-05 | 7.8 High |
When a fake broadcast/multicast 11w rmf without mmie received, since no proper length check in wma_process_bip, buffer overflow will happen in both cds_is_mmie_valid and qdf_nbuf_trim_tail in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8009, APQ8017, APQ8053, APQ8064, APQ8096AU, MDM9206, MDM9207C, MDM9607, MDM9640, MDM9650, MSM8937, MSM8996AU, MSM8998, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCN7605, QCS605, SDM630, SDM636, SDM660, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130 | ||||
CVE-2019-14123 | 1 Qualcomm | 18 Kamorta, Kamorta Firmware, Qcs404 and 15 more | 2024-08-05 | 7.8 High |
Possible buffer overflow and over read possible due to missing bounds checks for fixed limits if we consider widevine HLOS client as non-trustable in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in Kamorta, QCS404, Rennell, SC7180, SDX55, SM6150, SM7150, SM8250, SXR2130 | ||||
CVE-2019-14100 | 1 Qualcomm | 18 Mdm9206, Mdm9206 Firmware, Mdm9207c and 15 more | 2024-08-05 | 7.8 High |
Register write via debugfs is disabled by default to prevent register writing via debugfs. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9206, MDM9207C, MDM9607, Nicobar, QCS405, SA6155P, SC8180X, SDX55, SM8150 | ||||
CVE-2019-14131 | 1 Qualcomm | 42 Apq8053, Apq8053 Firmware, Apq8096au and 39 more | 2024-08-05 | 9.8 Critical |
Out of bound write can occur in radio measurement request if STA receives multiple invalid rrm measurement request from AP in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in APQ8053, APQ8096AU, MSM8998, Nicobar, QCA6574AU, QCS605, Rennell, SA6155P, Saipan, SC8180X, SDM660, SDM710, SDM845, SDX20, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130 | ||||
CVE-2019-14101 | 1 Qualcomm | 114 Apq8009, Apq8009 Firmware, Apq8096 and 111 more | 2024-08-05 | 7.1 High |
Out of bounds read can happen in diag event set mask command handler when user provided length in the command request is less than expected length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking in APQ8009, APQ8096, APQ8096AU, APQ8098, Kamorta, MDM9150, MDM9205, MDM9206, MDM9607, MDM9625, MDM9635M, MDM9640, MDM9650, MDM9655, MSM8905, MSM8909, MSM8909W, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996, MSM8996AU, MSM8998, Nicobar, QCM2150, QCN7605, QCS404, QCS405, QCS605, QM215, Rennell, SA415M, Saipan, SC7180, SC8180X, SDA660, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM630, SDM632, SDM636, SDM660, SDM670, SDM710, SDM845, SDM850, SDX24, SDX55, SM6150, SM7150, SM8150, SXR1130 | ||||
CVE-2019-14099 | 1 Qualcomm | 56 Apq8053, Apq8053 Firmware, Mdm9206 and 53 more | 2024-08-05 | 7.8 High |
Device misbehavior may be observed when incorrect offset, length or number of buffers is passed by user space in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8053, MDM9206, MDM9207C, MDM9607, MSM8909W, MSM8917, MSM8953, Nicobar, QCM2150, QCS405, QCS605, QM215, Saipan, SC8180X, SDA845, SDM429, SDM429W, SDM439, SDM450, SDM632, SDX24, SDX55, SM6150, SM7150, SM8150, SM8250, SXR1130, SXR2130 | ||||
CVE-2019-14130 | 1 Qualcomm | 18 Kamorta, Kamorta Firmware, Qcs404 and 15 more | 2024-08-05 | 7.8 High |
Memory corruption can occurs in trusted application if offset size from HLOS is more than actual mapped buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in Kamorta, QCS404, Rennell, SC7180, SDX55, SM6150, SM7150, SM8250, SXR2130 |