Vulnerabilities > Qualcomm > Qcn9074 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-07-01 CVE-2024-21466 Integer Underflow (Wrap or Wraparound) vulnerability in Qualcomm products
Information disclosure while parsing sub-IE length during new IE generation.
network
low complexity
qualcomm CWE-191
7.5
2024-07-01 CVE-2024-21482 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.
local
low complexity
qualcomm CWE-119
7.8
2024-06-03 CVE-2023-43537 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while handling T2LM Action Frame in WLAN Host.
network
low complexity
qualcomm CWE-125
7.5
2024-06-03 CVE-2023-43555 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in Video while parsing mp2 clip with invalid section length.
network
low complexity
qualcomm CWE-125
7.5
2024-05-06 CVE-2023-43521 Use After Free vulnerability in Qualcomm products
Memory corruption when multiple listeners are being registered with the same file descriptor.
local
low complexity
qualcomm CWE-416
7.8
2024-04-01 CVE-2023-28547 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in SPS Application while requesting for public key in sorter TA.
local
low complexity
qualcomm CWE-787
7.8
2024-04-01 CVE-2023-33023 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while processing finish_sign command to pass a rsp buffer.
local
low complexity
qualcomm CWE-120
7.8
2024-04-01 CVE-2024-21468 Use After Free vulnerability in Qualcomm products
Memory corruption when there is failed unmap operation in GPU.
local
low complexity
qualcomm CWE-416
7.8
2024-03-04 CVE-2023-28578 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Core Services while executing the command for removing a single event listener.
local
low complexity
qualcomm CWE-787
7.8
2024-03-04 CVE-2023-33066 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Audio while processing RT proxy port register driver.
local
low complexity
qualcomm CWE-787
7.8