Vulnerabilities > Qualcomm > SD 8 Gen1 5G Firmware > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-11-04 CVE-2024-38408 Unspecified vulnerability in Qualcomm products
Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
network
low complexity
qualcomm
critical
9.1
2024-02-06 CVE-2023-43519 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.
network
low complexity
qualcomm CWE-120
critical
9.8
2024-02-06 CVE-2023-43518 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in video while parsing invalid mp2 clip.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-11-07 CVE-2023-33045 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN Firmware while parsing a NAN management frame carrying a S3 attribute.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-10-03 CVE-2023-33028 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN Firmware while doing a memory copy of pmk cache.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-09-05 CVE-2023-28581 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-08-08 CVE-2022-40510 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-03-10 CVE-2022-40537 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response.
network
low complexity
qualcomm CWE-129
critical
9.8
2023-03-10 CVE-2022-40515 Double Free vulnerability in Qualcomm products
Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.
network
low complexity
qualcomm CWE-415
critical
9.8
2023-03-10 CVE-2022-33256 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption due to improper validation of array index in Multi-mode call processor.
network
low complexity
qualcomm CWE-129
critical
9.8