Vulnerabilities > Qualcomm > Qca6390 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-09-05 CVE-2023-21646 Reachable Assertion vulnerability in Qualcomm products
Transient DOS in Modem while processing invalid System Information Block 1.
network
low complexity
qualcomm CWE-617
7.5
2023-09-05 CVE-2023-21654 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Audio during playback session with audio effects enabled.
local
low complexity
qualcomm CWE-787
7.8
2023-09-05 CVE-2023-21662 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Core Platform while printing the response buffer in log.
local
low complexity
qualcomm CWE-120
7.8
2023-09-05 CVE-2023-21664 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in Core Platform while printing the response buffer in log.
local
low complexity
qualcomm CWE-787
7.8
2023-09-05 CVE-2023-28560 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
local
low complexity
qualcomm CWE-787
7.8
2023-08-08 CVE-2023-21626 Improper Authentication vulnerability in Qualcomm products
Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.
local
low complexity
qualcomm CWE-287
7.1
2023-08-08 CVE-2023-21627 Incorrect Type Conversion or Cast vulnerability in Qualcomm products
Memory corruption in Trusted Execution Environment while calling service API with invalid address.
local
low complexity
qualcomm CWE-704
7.8
2023-08-08 CVE-2023-21649 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN while running doDriverCmd for an unspecific command.
local
low complexity
qualcomm CWE-787
7.8
2023-08-08 CVE-2023-21650 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in GPS HLOS Driver when injectFdclData receives data with invalid data length.
local
low complexity
qualcomm CWE-787
7.8
2023-08-08 CVE-2023-21651 Incorrect Type Conversion or Cast vulnerability in Qualcomm products
Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE.
local
low complexity
qualcomm CWE-704
7.8