Vulnerabilities > Qualcomm > Mdm9607 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-03-10 CVE-2022-40537 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.
network
low complexity
qualcomm CWE-129
critical
9.8
2023-02-12 CVE-2022-25728 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in modem due to buffer over-read while processing response from DNS server
network
low complexity
qualcomm CWE-125
7.5
2023-02-12 CVE-2022-25732 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in modem due to buffer over read in dns client due to missing length check
network
low complexity
qualcomm CWE-125
7.5
2023-02-12 CVE-2022-25733 NULL Pointer Dereference vulnerability in Qualcomm products
Denial of service in modem due to null pointer dereference while processing DNS packets
network
low complexity
qualcomm CWE-476
7.5
2023-02-12 CVE-2022-25734 Infinite Loop vulnerability in Qualcomm products
Denial of service in modem due to missing null check while processing IP packets with padding
network
low complexity
qualcomm CWE-835
7.5
2023-02-12 CVE-2022-25735 NULL Pointer Dereference vulnerability in Qualcomm products
Denial of service in modem due to missing null check while processing TCP or UDP packets from server
network
low complexity
qualcomm CWE-476
7.5
2023-02-12 CVE-2022-25738 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in modem due to buffer over-red while performing checksum of packet received
network
low complexity
qualcomm CWE-125
7.5
2023-02-12 CVE-2022-33229 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets.
network
low complexity
qualcomm CWE-125
7.5
2023-02-12 CVE-2022-33233 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption due to configuration weakness in modem wile sending command to write protected files.
local
low complexity
qualcomm CWE-787
7.8
2023-02-12 CVE-2022-40512 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
network
low complexity
qualcomm CWE-125
7.5