Vulnerabilities > Qualcomm > Qca6584Au Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-07 CVE-2024-23374 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file.
local
low complexity
qualcomm CWE-787
6.7
2024-10-07 CVE-2024-23378 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record.
local
low complexity
qualcomm CWE-120
6.7
2024-10-07 CVE-2024-23379 Double Free vulnerability in Qualcomm products
Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario.
local
low complexity
qualcomm CWE-415
6.7
2024-08-05 CVE-2024-23357 NULL Pointer Dereference vulnerability in Qualcomm products
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
local
low complexity
qualcomm CWE-476
5.5
2024-07-01 CVE-2024-21462 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while loading the TA ELF file.
local
low complexity
qualcomm CWE-125
5.5
2024-05-06 CVE-2023-43528 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.
local
low complexity
qualcomm CWE-125
5.5
2024-02-06 CVE-2023-33060 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in Core when DDR memory check is called while DDR is not initialized.
local
low complexity
qualcomm CWE-125
5.5
2023-12-05 CVE-2023-28586 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
local
low complexity
qualcomm CWE-119
6.5
2023-11-07 CVE-2023-28553 Unspecified vulnerability in Qualcomm products
Information Disclosure in WLAN Host when processing WMI event command.
local
low complexity
qualcomm
5.5
2023-11-07 CVE-2023-28554 Unspecified vulnerability in Qualcomm products
Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.
local
low complexity
qualcomm
5.5