Vulnerabilities > Qualcomm > Qca6420 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-06 CVE-2022-33224 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries.
local
low complexity
qualcomm CWE-120
7.8
2023-06-06 CVE-2022-33226 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from diag client applications.
local
low complexity
qualcomm CWE-120
7.8
2023-06-06 CVE-2022-33227 Double Free vulnerability in Qualcomm products
Memory corruption in Linux android due to double free while calling unregister provider after register call.
local
low complexity
qualcomm CWE-415
7.8
2023-06-06 CVE-2022-33230 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host
local
low complexity
qualcomm CWE-120
7.8
2023-06-06 CVE-2022-33263 Use After Free vulnerability in Qualcomm products
Memory corruption due to use after free in Core when multiple DCI clients register and deregister.
local
low complexity
qualcomm CWE-416
7.8
2023-06-06 CVE-2022-33264 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
local
low complexity
qualcomm CWE-787
7.8
2023-06-06 CVE-2022-33267 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Linux while sending DRM request.
local
low complexity
qualcomm CWE-787
7.8
2023-06-06 CVE-2022-33307 Double Free vulnerability in Qualcomm products
Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.
local
low complexity
qualcomm CWE-415
7.8
2023-06-06 CVE-2022-40507 Double Free vulnerability in Qualcomm products
Memory corruption due to double free in Core while mapping HLOS address to the list.
local
low complexity
qualcomm CWE-415
7.8
2023-06-06 CVE-2022-40521 Improper Authentication vulnerability in Qualcomm products
Transient DOS due to improper authorization in Modem
network
low complexity
qualcomm CWE-287
7.5