Vulnerabilities > Qualcomm > Qca6698Aq Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-11-04 CVE-2024-38403 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while parsing BTM ML IE when per STA profile is not included.
network
low complexity
qualcomm CWE-125
6.5
2024-11-04 CVE-2024-38405 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while processing the CU information from RNR IE.
network
low complexity
qualcomm CWE-125
6.5
2024-10-07 CVE-2024-23370 Use After Free vulnerability in Qualcomm products
Memory corruption when a process invokes IOCTL calls from user-space to create a HAB virtual channel and another process invokes IOCTL calls to destroy the same.
local
low complexity
qualcomm CWE-416
6.7
2024-10-07 CVE-2024-23374 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file.
local
low complexity
qualcomm CWE-787
6.7
2024-10-07 CVE-2024-23378 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record.
local
low complexity
qualcomm CWE-120
6.7
2024-10-07 CVE-2024-23379 Double Free vulnerability in Qualcomm products
Memory corruption while unmapping the fastrpc map when two threads can free the same map in concurrent scenario.
local
low complexity
qualcomm CWE-415
6.7
2024-09-02 CVE-2024-33043 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
local
low complexity
qualcomm CWE-125
5.5
2024-08-05 CVE-2024-23357 NULL Pointer Dereference vulnerability in Qualcomm products
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
local
low complexity
qualcomm CWE-476
5.5
2024-07-01 CVE-2024-21462 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while loading the TA ELF file.
local
low complexity
qualcomm CWE-125
5.5
2024-05-06 CVE-2023-43528 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.
local
low complexity
qualcomm CWE-125
5.5