Vulnerabilities > Qualcomm > Fastconnect 6900 Firmware
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-01-06 | CVE-2024-45542 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver. | 7.8 |
2025-01-06 | CVE-2024-45546 | Out-of-bounds Read vulnerability in Qualcomm products Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space. | 7.8 |
2025-01-06 | CVE-2024-45547 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption while processing IOCTL call invoked from user-space to verify non extension FIPS encryption and decryption functionality. | 7.8 |
2025-01-06 | CVE-2024-45548 | Out-of-bounds Read vulnerability in Qualcomm products Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call. | 7.8 |
2025-01-06 | CVE-2024-45550 | Improper Validation of Array Index vulnerability in Qualcomm products Memory corruption occurs when invoking any IOCTL-calling application that executes all MCDM driver IOCTL calls. | 7.8 |
2025-01-06 | CVE-2024-45553 | Use After Free vulnerability in Qualcomm products Memory corruption can occur when process-specific maps are added to the global list. | 7.8 |
2025-01-06 | CVE-2024-45558 | Out-of-bounds Read vulnerability in Qualcomm products Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length. | 7.5 |
2024-12-02 | CVE-2024-33036 | Use of Out-of-range Pointer Offset vulnerability in Qualcomm products Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access. | 6.7 |
2024-12-02 | CVE-2024-33037 | Buffer Over-read vulnerability in Qualcomm products Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware. | 6.1 |
2024-12-02 | CVE-2024-33040 | Unspecified vulnerability in Qualcomm products Memory corruption while invoking redundant release command to release one buffer from user space as race condition can occur in kernel space between buffer release and buffer access. | 7.0 |