Vulnerabilities > Qualcomm > Sa6145P Firmware

DATE CVE VULNERABILITY TITLE RISK
2025-02-03 CVE-2024-38414 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while processing information on firmware image during core initialization.
local
low complexity
qualcomm CWE-125
5.5
2025-02-03 CVE-2024-38416 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure during audio playback.
local
low complexity
qualcomm CWE-125
5.5
2025-02-03 CVE-2024-38417 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while processing IO control commands.
local
low complexity
qualcomm CWE-125
5.5
2025-02-03 CVE-2024-38418 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while parsing the memory map info in IOCTL calls.
local
high complexity
qualcomm CWE-367
7.0
2025-02-03 CVE-2024-38420 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while configuring a Hypervisor based input virtual device.
local
low complexity
qualcomm CWE-787
7.8
2025-01-06 CVE-2024-33041 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,
local
low complexity
qualcomm CWE-787
7.8
2025-01-06 CVE-2024-33055 Use After Free vulnerability in Qualcomm products
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
local
low complexity
qualcomm CWE-416
7.8
2025-01-06 CVE-2024-33067 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
local
low complexity
qualcomm CWE-125
5.5
2025-01-06 CVE-2024-45555 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification.
local
low complexity
qualcomm CWE-190
7.8
2024-12-02 CVE-2024-33036 Use of Out-of-range Pointer Offset vulnerability in Qualcomm products
Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.
local
low complexity
qualcomm CWE-823
6.7