Vulnerabilities > Qualcomm > Qcs405 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-01-09 | CVE-2022-33290 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS in Bluetooth HOST due to null pointer dereference when a mismatched argument is passed. | 7.5 |
2023-01-09 | CVE-2022-33299 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS due to null pointer dereference in Bluetooth HOST while receiving an attribute protocol PDU with zero length data. | 7.5 |
2023-01-09 | CVE-2022-40516 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in Core due to stack-based buffer overflow. | 7.8 |
2023-01-09 | CVE-2022-40517 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in core due to stack-based buffer overflow | 7.8 |
2022-12-13 | CVE-2022-25682 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Memory corruption in MODEM UIM due to usage of out of range pointer offset while decoding command from card in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | 7.8 |
2022-12-13 | CVE-2022-25685 | Unspecified vulnerability in Qualcomm products Denial of service in Modem module due to improper authorization while error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables | 7.5 |
2022-12-13 | CVE-2022-25695 | Improper Validation of Array Index vulnerability in Qualcomm products Memory corruption in MODEM due to Improper Validation of Array Index while processing GSTK Proactive commands in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | 7.8 |
2022-12-13 | CVE-2022-33235 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure due to buffer over-read in WLAN firmware while parsing security context info attributes. | 7.5 |
2022-12-13 | CVE-2022-33238 | Infinite Loop vulnerability in Qualcomm products Transient DOS due to loop with unreachable exit condition in WLAN while processing an incoming FTM frames. | 7.5 |
2022-12-13 | CVE-2022-33268 | Out-of-bounds Read vulnerability in Qualcomm products Information disclosure due to buffer over-read in Bluetooth HOST while pairing and connecting A2DP. | 8.1 |