| CVE | 
    Vendors | 
    Products | 
    Updated | 
    CVSS v3.1 | 
    
    
    
    
        | Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information. | 
    
    
    
    
        | Memory corruption due to buffer copy without checking the size of input in HLOS when input message size is larger than the buffer capacity. | 
    
    
    
    
        | Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command. | 
    
    
    
    
        | Transient DOS in modem due to reachable assertion. | 
    
    
    
    
        | Information disclosure due to buffer over-read in WLAN while parsing NMF frame. | 
    
    
    
    
        | Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message. | 
    
    
    
    
        | Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. | 
    
    
    
    
        | Memory corruption in Core due to time-of-check time-of-use race condition during dump collection in trust zone. | 
    
    
    
    
        | Transient DOS due to reachable assertion in Modem while processing SIB1 Message. | 
    
    
    
    
        | Transient DOS due to reachable assertion in Modem because of invalid network configuration. | 
    
    
    
    
        | Transient DOS due to reachable assertion in modem when network repeatedly sent invalid message container for NR to LTE handover. | 
    
    
    
    
        | Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http. | 
    
    
    
    
        | Transient DOS due to reachable assertion in modem during MIB reception and SIB timeout | 
    
    
    
    
        | Memory corruption due to improper authentication in Qualcomm IPC while loading unsigned lib in audio PD. | 
    
    
    
    
        | Memory corruption due to configuration weakness in modem wile sending command to write protected files. | 
    
    
    
    
        | Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory. | 
    
    
    
    
        | Memory corruption due to double free in core while initializing the encryption key. | 
    
    
    
    
        | Memory corruption in modem due to buffer overflow while processing a PPP packet | 
    
    
    
    
        | Information disclosure in Bluetooth driver due to buffer over-read while reading l2cap length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables | 
    
    
    
    
        | Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response |