Vulnerabilities > Qualcomm > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-01-21 | CVE-2020-11217 | Double Free vulnerability in Qualcomm products A possible double free or invalid memory access in audio driver while reading Speaker Protection parameters in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile | 7.8 |
2021-01-21 | CVE-2020-11214 | Out-of-bounds Read vulnerability in Qualcomm products Buffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it as more number of immutable schedules in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking | 7.5 |
2021-01-21 | CVE-2020-11200 | Out-of-bounds Read vulnerability in Qualcomm products Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. | 7.5 |
2021-01-21 | CVE-2020-11185 | Out-of-bounds Write vulnerability in Qualcomm products Out of bound issue in WLAN driver while processing vdev responses from firmware due to lack of validation of data received from firmware in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking | 7.8 |
2021-01-21 | CVE-2020-11181 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Out of bound access issue while handling cvp process control command due to improper validation of buffer pointer received from HLOS in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile | 7.8 |
2021-01-21 | CVE-2020-11180 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Out of bound access in computer vision control due to improper validation of command length before processing it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile | 7.8 |
2021-01-21 | CVE-2020-11179 | Out-of-bounds Write vulnerability in Qualcomm products Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. | 7.0 |
2021-01-21 | CVE-2020-11146 | Improper Validation of Array Index vulnerability in Qualcomm products Out of bound write while copying data using IOCTL due to lack of check of array index received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | 7.8 |
2021-01-21 | CVE-2020-11145 | Divide By Zero vulnerability in Qualcomm products Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extension header SN in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | 7.5 |
2021-01-21 | CVE-2020-11139 | Out-of-bounds Write vulnerability in Qualcomm products Out of bound memory access while processing frames due to lack of check of invalid frames received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking | 7.5 |