Vulnerabilities > Qualcomm > High

DATE CVE VULNERABILITY TITLE RISK
2024-07-01 CVE-2024-21469 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
local
low complexity
qualcomm CWE-787
7.8
2024-07-01 CVE-2024-21482 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption during the secure boot process, when the `bootm` command is used, it bypasses the authentication of the kernel/rootfs image.
local
low complexity
qualcomm CWE-119
7.8
2024-07-01 CVE-2024-23372 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size.
local
low complexity
qualcomm CWE-190
7.8
2024-07-01 CVE-2024-23373 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
local
low complexity
qualcomm CWE-416
7.8
2024-07-01 CVE-2024-23380 Use After Free vulnerability in Qualcomm products
Memory corruption while handling user packets during VBO bind operation.
local
low complexity
qualcomm CWE-416
7.8
2024-06-03 CVE-2023-43537 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while handling T2LM Action Frame in WLAN Host.
network
low complexity
qualcomm CWE-125
7.5
2024-06-03 CVE-2023-43538 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
local
low complexity
qualcomm CWE-120
7.8
2024-06-03 CVE-2023-43543 Use After Free vulnerability in Qualcomm products
Memory corruption in Audio during a playback or a recording due to race condition between allocation and deallocation of graph object.
local
high complexity
qualcomm CWE-416
7.0
2024-06-03 CVE-2023-43544 Use After Free vulnerability in Qualcomm products
Memory corruption when IPC callback handle is used after it has been released during register callback by another thread.
local
low complexity
qualcomm CWE-416
7.8
2024-06-03 CVE-2023-43545 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption when more scan frequency list or channels are sent from the user space.
local
low complexity
qualcomm CWE-190
7.8