Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-05-06 CVE-2025-21459 Buffer Over-read vulnerability in Qualcomm products
Transient DOS while parsing per STA profile in ML IE.
network
low complexity
qualcomm CWE-126
7.5
2025-05-06 CVE-2025-21460 Improper Input Validation vulnerability in Qualcomm products
Memory corruption while processing a message, when the buffer is controlled by a Guest VM, the value can be changed continuously.
local
low complexity
qualcomm CWE-20
7.8
2025-05-06 CVE-2025-21462 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while processing an IOCTL request, when buffer significantly exceeds the command argument limit.
local
low complexity
qualcomm CWE-787
7.8
2025-05-06 CVE-2025-21467 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while reading the FW response from the shared queue.
local
low complexity
qualcomm CWE-787
7.8
2025-05-06 CVE-2025-21468 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while reading response from FW, when buffer size is changed by FW while driver is using this size to write null character at the end of buffer.
local
low complexity
qualcomm CWE-787
7.8
2025-05-06 CVE-2025-21469 Improper Access Control vulnerability in Qualcomm products
Memory corruption while processing image encoding, when input buffer length is 0 in IOCTL call.
local
low complexity
qualcomm CWE-284
7.8
2025-05-06 CVE-2025-21470 Improper Access Control vulnerability in Qualcomm products
Memory corruption while processing image encoding, when configuration is NULL in IOCTL parameter.
local
low complexity
qualcomm CWE-284
7.8
2025-05-06 CVE-2025-21475 Buffer Over-read vulnerability in Qualcomm products
Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
local
low complexity
qualcomm CWE-126
7.8
2025-05-06 CVE-2025-22886 Memory Leak vulnerability in Openatom Openharmony
in OpenHarmony v5.0.3 and prior versions allow a local attacker case DOS through missing release of memory.
local
low complexity
openatom CWE-401
5.5
2025-05-06 CVE-2025-25052 Classic Buffer Overflow vulnerability in Openatom Openharmony
in OpenHarmony v5.0.3 and prior versions allow a local attacker cause DOS through buffer overflow.
local
low complexity
openatom CWE-120
5.5