Vulnerabilities > Qualcomm > Qcm6490 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-06 CVE-2022-40521 Improper Authentication vulnerability in Qualcomm products
Transient DOS due to improper authorization in Modem
network
low complexity
qualcomm CWE-287
7.5
2023-06-06 CVE-2022-40529 Incorrect Authorization vulnerability in Qualcomm products
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
local
low complexity
qualcomm CWE-863
7.8
2023-06-06 CVE-2022-40536 Improper Authentication vulnerability in Qualcomm products
Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.
network
low complexity
qualcomm CWE-287
7.5
2023-06-06 CVE-2023-21656 Improper Input Validation vulnerability in Qualcomm products
Memory corruption in WLAN HOST while receiving an WMI event from firmware.
local
low complexity
qualcomm CWE-20
7.8
2023-06-06 CVE-2023-21657 Improper Input Validation vulnerability in Qualcomm products
Memoru corruption in Audio when ADSP sends input during record use case.
local
low complexity
qualcomm CWE-20
7.8
2023-06-06 CVE-2023-21658 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while processing the received beacon or probe response frame.
network
low complexity
qualcomm CWE-125
7.5
2023-06-06 CVE-2023-21659 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while processing frames with missing header fields.
network
low complexity
qualcomm CWE-125
7.5
2023-06-06 CVE-2023-21660 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while parsing FT Information Elements.
network
low complexity
qualcomm CWE-125
7.5
2023-06-06 CVE-2023-21670 Incorrect Authorization vulnerability in Qualcomm products
Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.
local
low complexity
qualcomm CWE-863
7.8
2023-05-02 CVE-2022-40504 Reachable Assertion vulnerability in Qualcomm products
Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.
network
low complexity
qualcomm CWE-617
7.5