Vulnerabilities > Qualcomm > Sa9000P Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-06-06 CVE-2022-40507 Double Free vulnerability in Qualcomm products
Memory corruption due to double free in Core while mapping HLOS address to the list.
local
low complexity
qualcomm CWE-415
7.8
2023-06-06 CVE-2022-40529 Incorrect Authorization vulnerability in Qualcomm products
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
local
low complexity
qualcomm CWE-863
7.8
2023-06-06 CVE-2023-21632 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Automotive GPU while querying a gsl memory node.
local
low complexity
qualcomm CWE-787
7.8
2023-05-02 CVE-2022-25713 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exporting a shared key.
local
low complexity
qualcomm CWE-119
7.8
2023-05-02 CVE-2023-21642 Unspecified vulnerability in Qualcomm products
Memory corruption in HAB Memory management due to broad system privileges via physical address.
local
low complexity
qualcomm
7.8
2023-04-13 CVE-2022-33231 Double Free vulnerability in Qualcomm products
Memory corruption due to double free in core while initializing the encryption key.
local
low complexity
qualcomm CWE-415
7.8
2023-04-13 CVE-2022-33269 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment.
local
low complexity
qualcomm CWE-190
7.8
2023-04-13 CVE-2022-33282 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption in Automotive Multimedia due to integer overflow to buffer overflow during IOCTL calls in video playback.
local
low complexity
qualcomm CWE-190
7.8
2023-04-13 CVE-2022-33288 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information.
local
low complexity
qualcomm CWE-120
8.8
2023-03-10 CVE-2022-33242 Improper Authentication vulnerability in Qualcomm products
Memory corruption due to improper authentication in Qualcomm IPC while loading unsigned lib in audio PD.
local
low complexity
qualcomm CWE-287
7.8