Vulnerabilities > Qualcomm > Qca4004 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-08-08 | CVE-2023-21651 | Incorrect Type Conversion or Cast vulnerability in Qualcomm products Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE. | 7.8 |
2023-06-06 | CVE-2022-40507 | Double Free vulnerability in Qualcomm products Memory corruption due to double free in Core while mapping HLOS address to the list. | 7.8 |
2023-06-06 | CVE-2022-40521 | Improper Authentication vulnerability in Qualcomm products Transient DOS due to improper authorization in Modem | 7.5 |
2023-05-02 | CVE-2022-33304 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet. | 7.5 |
2023-05-02 | CVE-2022-40505 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure due to buffer over-read in Modem while parsing DNS hostname. | 7.5 |
2023-04-13 | CVE-2022-33258 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure due to buffer over-read in modem while reading configuration parameters. | 7.5 |
2023-04-13 | CVE-2022-25726 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure in modem data due to array out of bound access while handling the incoming DNS response packet | 7.5 |
2023-04-13 | CVE-2022-25730 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure in modem due to improper check of IP type while processing DNS server query | 7.5 |
2023-04-13 | CVE-2022-25731 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure in modem due to buffer over-read while processing packets from DNS server | 7.5 |
2023-04-13 | CVE-2022-25737 | Use of Uninitialized Resource vulnerability in Qualcomm products Information disclosure in modem due to missing NULL check while reading packets received from local network | 7.5 |