Vulnerabilities > Qualcomm > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-09-02 CVE-2024-33043 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
local
low complexity
qualcomm CWE-125
5.5
2024-08-05 CVE-2024-23357 NULL Pointer Dereference vulnerability in Qualcomm products
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
local
low complexity
qualcomm CWE-476
5.5
2024-07-01 CVE-2024-21460 Use of Insufficiently Random Values vulnerability in Qualcomm products
Information disclosure when ASLR relocates the IMEM and Secure DDR portions as one chunk in virtual address space.
local
low complexity
qualcomm CWE-330
6.5
2024-07-01 CVE-2024-21462 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while loading the TA ELF file.
local
low complexity
qualcomm CWE-125
5.5
2024-06-03 CVE-2024-21478 NULL Pointer Dereference vulnerability in Qualcomm products
transient DOS when setting up a fence callback to free a KGSL memory entry object during DMA.
local
low complexity
qualcomm CWE-476
5.5
2024-05-06 CVE-2023-43527 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while parsing dts header atom in Video.
local
low complexity
qualcomm CWE-125
5.5
2024-05-06 CVE-2023-43528 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.
local
low complexity
qualcomm CWE-125
5.5
2024-03-04 CVE-2023-33078 Out-of-bounds Read vulnerability in Qualcomm products
Information Disclosure while processing IOCTL request in FastRPC.
local
low complexity
qualcomm CWE-125
5.5
2024-02-06 CVE-2023-33060 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in Core when DDR memory check is called while DDR is not initialized.
local
low complexity
qualcomm CWE-125
5.5
2024-01-02 CVE-2023-33014 Improper Input Validation vulnerability in Qualcomm products
Information disclosure in Core services while processing a Diag command.
low complexity
qualcomm CWE-20
6.8