Vulnerabilities > Qualcomm > Mdm9206 Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-08-08 CVE-2022-40510 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-04-13 CVE-2022-33259 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption due to buffer copy without checking the size of input in modem while decoding raw SMS received.
network
low complexity
qualcomm CWE-120
critical
9.8
2023-04-13 CVE-2022-33211 Incorrect Calculation of Buffer Size vulnerability in Qualcomm products
memory corruption in modem due to improper check while calculating size of serialized CoAP message
network
low complexity
qualcomm CWE-131
critical
9.8
2023-04-13 CVE-2022-25740 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in modem due to buffer overwrite while building an IPv6 multicast address based on the MAC address of the iface
network
low complexity
qualcomm CWE-787
critical
9.8
2023-04-13 CVE-2022-25678 Out-of-bounds Write vulnerability in Qualcomm products
Memory correction in modem due to buffer overwrite during coap connection
network
low complexity
qualcomm CWE-787
critical
9.8
2023-03-10 CVE-2022-40515 Double Free vulnerability in Qualcomm products
Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.
network
low complexity
qualcomm CWE-415
critical
9.8
2023-02-12 CVE-2022-25729 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in modem due to improper length check while copying into memory
network
low complexity
qualcomm CWE-787
critical
9.8
2022-11-15 CVE-2022-25727 Improper Validation of Specified Quantity in Input vulnerability in Qualcomm products
Memory Corruption in modem due to improper length check while copying into memory in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music
network
low complexity
qualcomm CWE-1284
critical
9.8
2022-10-19 CVE-2022-25748 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames.
network
low complexity
qualcomm CWE-190
critical
9.8
2022-10-19 CVE-2022-25720 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption in WLAN due to out of bound array access during connect/roaming in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
network
low complexity
qualcomm CWE-129
critical
9.8