Vulnerabilities > Qualcomm > Sa9000P Firmware

DATE CVE VULNERABILITY TITLE RISK
2022-04-01 CVE-2021-1950 Improper Authentication vulnerability in Qualcomm products
Improper cleaning of secure memory between authenticated users can lead to face authentication bypass in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
local
low complexity
qualcomm CWE-287
7.8
2022-04-01 CVE-2021-35115 Use After Free vulnerability in Qualcomm products
Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile
local
low complexity
qualcomm CWE-416
7.8
2022-01-03 CVE-2021-1894 Improper Handling of Exceptional Conditions vulnerability in Qualcomm products
Improper access control in TrustZone due to improper error handling while handling the signing key in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
local
low complexity
qualcomm CWE-755
7.8
2022-01-03 CVE-2021-30269 NULL Pointer Dereference vulnerability in Qualcomm products
Possible null pointer dereference due to lack of TLB validation for user provided address in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
local
low complexity
qualcomm CWE-476
7.8