Vulnerabilities > Qualcomm > High

DATE CVE VULNERABILITY TITLE RISK
2024-11-26 CVE-2018-5852 Integer Underflow (Wrap or Wraparound) vulnerability in Qualcomm products
An unsigned integer underflow vulnerability in IPA driver result into a buffer over-read while reading NAT entry using debugfs command 'cat /sys/kernel/debug/ipa/ip4_nat'
local
low complexity
qualcomm CWE-191
7.8
2024-11-26 CVE-2016-10394 Improper Authentication vulnerability in Qualcomm products
Initial xbl_sec revision does not have all the debug policy features and critical checks.
local
low complexity
qualcomm CWE-287
7.8
2024-11-26 CVE-2017-15832 Out-of-bounds Write vulnerability in Qualcomm products
Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW
local
low complexity
qualcomm CWE-787
7.8
2024-11-26 CVE-2017-18153 Use After Free vulnerability in Qualcomm products
A race condition exists in a driver potentially leading to a use-after-free condition.
local
high complexity
qualcomm CWE-416
7.0
2024-11-26 CVE-2018-11952 Improper Authentication vulnerability in Qualcomm products
An image with a version lower than the fuse version may potentially be booted lead to improper authentication.
local
low complexity
qualcomm CWE-287
7.8
2024-11-22 CVE-2017-9711 Unspecified vulnerability in Qualcomm products
Certain unprivileged processes are able to perform IOCTL calls.
local
low complexity
qualcomm
7.8
2024-11-04 CVE-2024-33033 Use After Free vulnerability in Qualcomm products
Memory corruption while processing IOCTL calls to unmap the buffers.
local
low complexity
qualcomm CWE-416
7.8
2024-11-04 CVE-2024-38406 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while handling IOCTL calls in JPEG Encoder driver.
local
high complexity
qualcomm CWE-367
7.0
2024-11-04 CVE-2024-38407 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while processing input parameters for any IOCTL call in the JPEG Encoder driver.
local
high complexity
qualcomm CWE-367
7.0
2024-11-04 CVE-2024-38409 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while station LL statistic handling.
local
low complexity
qualcomm CWE-120
7.8