Vulnerabilities > Qualcomm > Qcc2073 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2025-02-03 CVE-2024-45561 Use After Free vulnerability in Qualcomm products
Memory corruption while handling IOCTL call from user-space to set latency level.
local
low complexity
qualcomm CWE-416
7.8
2025-02-03 CVE-2024-49838 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while parsing the OCI IE with invalid length.
network
low complexity
qualcomm CWE-125
7.5
2025-02-03 CVE-2024-49840 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality.
local
low complexity
qualcomm CWE-119
7.8
2025-01-06 CVE-2024-45541 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption when IOCTL call is invoked from user-space to read board data.
local
low complexity
qualcomm CWE-120
7.8
2025-01-06 CVE-2024-45542 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
local
low complexity
qualcomm CWE-787
7.8
2025-01-06 CVE-2024-45546 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption while processing FIPS encryption or decryption IOCTL call invoked from user-space.
local
low complexity
qualcomm CWE-125
7.8
2025-01-06 CVE-2024-45547 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while processing IOCTL call invoked from user-space to verify non extension FIPS encryption and decryption functionality.
local
low complexity
qualcomm CWE-120
7.8
2025-01-06 CVE-2024-45548 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption while processing FIPS encryption or decryption validation functionality IOCTL call.
local
low complexity
qualcomm CWE-125
7.8
2025-01-06 CVE-2024-45558 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
network
low complexity
qualcomm CWE-125
7.5
2024-12-02 CVE-2024-43050 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
local
low complexity
qualcomm CWE-787
7.8