Vulnerabilities > Qualcomm > Qca6390 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-09-05 CVE-2022-33275 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
local
low complexity
qualcomm CWE-129
7.8
2023-09-05 CVE-2022-40524 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption due to buffer over-read in Modem while processing SetNativeHandle RTP service.
local
low complexity
qualcomm CWE-125
7.8
2023-09-05 CVE-2023-21636 Improper Validation of Array Index vulnerability in Qualcomm products
Memory Corruption due to improper validation of array index in Linux while updating adn record.
local
low complexity
qualcomm CWE-129
7.8
2023-09-05 CVE-2023-21644 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption in RIL due to Integer Overflow while triggering qcril_uim_request_apdu request.
local
low complexity
qualcomm CWE-190
7.8
2023-09-05 CVE-2023-21646 Reachable Assertion vulnerability in Qualcomm products
Transient DOS in Modem while processing invalid System Information Block 1.
network
low complexity
qualcomm CWE-617
7.5
2023-09-05 CVE-2023-21654 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Audio during playback session with audio effects enabled.
local
low complexity
qualcomm CWE-787
7.8
2023-09-05 CVE-2023-21662 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Core Platform while printing the response buffer in log.
local
low complexity
qualcomm CWE-120
7.8
2023-09-05 CVE-2023-21664 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in Core Platform while printing the response buffer in log.
local
low complexity
qualcomm CWE-787
7.8
2023-09-05 CVE-2023-21667 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.
low complexity
qualcomm CWE-125
6.5
2023-09-05 CVE-2023-28560 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
local
low complexity
qualcomm CWE-787
7.8