Vulnerabilities > Qualcomm > Mdm9607 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-02-12 | CVE-2022-25735 | NULL Pointer Dereference vulnerability in Qualcomm products Denial of service in modem due to missing null check while processing TCP or UDP packets from server | 7.5 |
2023-02-12 | CVE-2022-25738 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure in modem due to buffer over-red while performing checksum of packet received | 7.5 |
2023-02-12 | CVE-2022-33229 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets. | 7.5 |
2023-02-12 | CVE-2022-33233 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption due to configuration weakness in modem wile sending command to write protected files. | 7.8 |
2023-02-12 | CVE-2022-40512 | Out-of-bounds Read vulnerability in Qualcomm products Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. | 7.5 |
2023-01-09 | CVE-2022-33266 | Integer Overflow or Wraparound vulnerability in Qualcomm products Memory corruption in Audio due to integer overflow to buffer overflow while music playback of clips like amr,evrc,qcelp with modified content. | 7.8 |
2023-01-09 | CVE-2022-33290 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS in Bluetooth HOST due to null pointer dereference when a mismatched argument is passed. | 7.5 |
2023-01-09 | CVE-2022-33299 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS due to null pointer dereference in Bluetooth HOST while receiving an attribute protocol PDU with zero length data. | 7.5 |
2022-12-13 | CVE-2022-25682 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Memory corruption in MODEM UIM due to usage of out of range pointer offset while decoding command from card in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | 7.8 |
2022-12-13 | CVE-2022-25695 | Improper Validation of Array Index vulnerability in Qualcomm products Memory corruption in MODEM due to Improper Validation of Array Index while processing GSTK Proactive commands in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | 7.8 |