Vulnerabilities > Qualcomm > Sa8540P Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-07-01 CVE-2024-21469 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
local
low complexity
qualcomm CWE-787
7.8
2024-07-01 CVE-2024-23373 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
local
low complexity
qualcomm CWE-416
7.8
2024-06-03 CVE-2023-43538 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
local
low complexity
qualcomm CWE-120
7.8
2024-06-03 CVE-2023-43556 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Hypervisor when platform information mentioned is not aligned.
local
low complexity
qualcomm CWE-120
8.8
2024-05-06 CVE-2023-33119 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
local
high complexity
qualcomm CWE-367
7.0
2024-05-06 CVE-2023-43530 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption in HLOS while checking for the storage type.
local
low complexity
qualcomm CWE-190
7.8
2024-05-06 CVE-2023-43531 Access of Uninitialized Pointer vulnerability in Qualcomm products
Memory corruption while verifying the serialized header when the key pairs are generated.
local
low complexity
qualcomm CWE-824
7.8
2024-05-06 CVE-2024-21471 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
local
low complexity
qualcomm CWE-416
7.8
2024-05-06 CVE-2024-21474 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when size of buffer from previous call is used without validation or re-initialization.
local
low complexity
qualcomm CWE-787
7.8
2024-05-06 CVE-2024-21480 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while playing audio file having large-sized input buffer.
network
low complexity
qualcomm CWE-120
critical
9.8