Vulnerabilities > Qualcomm > Sc8380Xp Firmware

DATE CVE VULNERABILITY TITLE RISK
2025-03-03 CVE-2024-43051 Improper Authorization vulnerability in Qualcomm products
Information disclosure while deriving keys for a session for any Widevine use case.
local
low complexity
qualcomm CWE-285
5.5
2025-03-03 CVE-2024-43056 Buffer Over-read vulnerability in Qualcomm products
Transient DOS during hypervisor virtual I/O operation in a virtual machine.
local
low complexity
qualcomm CWE-126
6.5
2025-03-03 CVE-2024-53033 Untrusted Pointer Dereference vulnerability in Qualcomm products
Memory corruption while doing Escape call when user provides valid kernel address in the place of valid user buffer address.
local
low complexity
qualcomm CWE-822
7.8
2025-03-03 CVE-2024-53034 Untrusted Pointer Dereference vulnerability in Qualcomm products
Memory corruption occurs during an Escape call if an invalid Kernel Mode CPU event and sync object handle are passed with the DriverKnownEscape flag reset.
local
low complexity
qualcomm CWE-822
7.8
2025-02-03 CVE-2024-38420 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while configuring a Hypervisor based input virtual device.
local
low complexity
qualcomm CWE-787
7.8
2025-02-03 CVE-2024-45560 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.
local
high complexity
qualcomm CWE-367
7.0
2025-02-03 CVE-2024-45561 Use After Free vulnerability in Qualcomm products
Memory corruption while handling IOCTL call from user-space to set latency level.
local
low complexity
qualcomm CWE-416
7.8
2025-02-03 CVE-2024-45573 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption may occour while generating test pattern due to negative indexing of display ID.
local
low complexity
qualcomm CWE-119
7.8
2025-02-03 CVE-2024-49838 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while parsing the OCI IE with invalid length.
network
low complexity
qualcomm CWE-125
7.5
2025-02-03 CVE-2024-49840 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption while Invoking IOCTL calls from user-space to validate FIPS encryption or decryption functionality.
local
low complexity
qualcomm CWE-119
7.8