Vulnerabilities > Qualcomm > Sa8770P Firmware

DATE CVE VULNERABILITY TITLE RISK
2025-01-06 CVE-2024-23366 Out-of-bounds Read vulnerability in Qualcomm products
Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size.
local
low complexity
qualcomm CWE-125
5.5
2025-01-06 CVE-2024-43063 Out-of-bounds Read vulnerability in Qualcomm products
information disclosure while invoking the mailbox read API.
local
low complexity
qualcomm CWE-125
5.5
2025-01-06 CVE-2024-43064 Allocation of Resources Without Limits or Throttling vulnerability in Qualcomm products
Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers through SMMU.
local
high complexity
qualcomm CWE-770
4.7
2025-01-06 CVE-2024-45553 Use After Free vulnerability in Qualcomm products
Memory corruption can occur when process-specific maps are added to the global list.
local
low complexity
qualcomm CWE-416
7.8
2025-01-06 CVE-2024-45555 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption can occur if an already verified IFS2 image is overwritten, bypassing boot verification.
local
low complexity
qualcomm CWE-190
7.8
2025-01-06 CVE-2024-45558 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
network
low complexity
qualcomm CWE-125
7.5
2025-01-06 CVE-2024-45559 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend.
local
low complexity
qualcomm CWE-125
5.5
2024-12-02 CVE-2024-33039 Untrusted Pointer Dereference vulnerability in Qualcomm products
Memory corruption when PAL client calls PAL service APIs by passing a random value as handle and the handle is not validated by the service.
local
low complexity
qualcomm CWE-822
6.7
2024-12-02 CVE-2024-33044 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
local
low complexity
qualcomm CWE-129
7.8
2024-12-02 CVE-2024-33056 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
local
low complexity
qualcomm CWE-125
7.8