Vulnerabilities > Qualcomm > Sc8180Xp Aaab Firmware

DATE CVE VULNERABILITY TITLE RISK
2025-05-06 CVE-2024-49841 Detection of Error Condition Without Action vulnerability in Qualcomm products
Memory corruption during memory assignment to headless peripheral VM due to incorrect error code handling.
local
low complexity
qualcomm CWE-390
7.8
2025-05-06 CVE-2024-49842 Improper Access Control vulnerability in Qualcomm products
Memory corruption during memory mapping into protected VM address space due to incorrect API restrictions.
local
low complexity
qualcomm CWE-284
7.8
2025-05-06 CVE-2025-21475 Buffer Over-read vulnerability in Qualcomm products
Memory corruption while processing escape code, when DisplayId is passed with large unsigned value.
local
low complexity
qualcomm CWE-126
7.8
2025-03-03 CVE-2024-43056 Buffer Over-read vulnerability in Qualcomm products
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
local
low complexity
qualcomm CWE-126
6.5
2025-02-03 CVE-2024-38420 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while configuring a Hypervisor based input virtual device.
local
low complexity
qualcomm CWE-787
7.8
2025-01-06 CVE-2024-45541 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption when IOCTL call is invoked from user-space to read board data.
local
low complexity
qualcomm CWE-120
7.8
2025-01-06 CVE-2024-45542 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
local
low complexity
qualcomm CWE-787
7.8
2024-06-03 CVE-2023-43538 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in TZ Secure OS while Tunnel Invoke Manager initialization.
local
low complexity
qualcomm CWE-120
7.8
2024-06-03 CVE-2023-43551 Improper Authentication vulnerability in Qualcomm products
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
network
low complexity
qualcomm CWE-287
7.5
2024-05-06 CVE-2023-33119 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while loading a VM from a signed VM image that is not coherent in the processor cache.
local
high complexity
qualcomm CWE-367
7.0