Vulnerabilities > Qualcomm > SD 835 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-11-28 | CVE-2018-5870 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm SD 835 Firmware, Sda660 Firmware and Sdx24 Firmware While loading a service image, an untrusted pointer dereference can occur in Snapdragon Mobile in versions SD 835, SDA660, SDX24. | 7.8 |
2018-11-28 | CVE-2018-11996 | Improper Validation of Array Index vulnerability in Qualcomm products When a malformed command is sent to the device programmer, an out-of-bounds access can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MDM9655, MSM8909W, MSM8996AU, SD 210/SD 212/SD 205, SD 600, SD 820, SD 820A, SD 835, SDA660, SDX20, SDX24. | 7.8 |
2018-11-28 | CVE-2018-11994 | Unspecified vulnerability in Qualcomm products SMMU secure camera logic allows secure camera controllers to access HLOS memory during session in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDA845, SDX24, SXR1130. | 7.8 |
2018-11-28 | CVE-2018-11921 | Improper Handling of Exceptional Conditions vulnerability in Qualcomm products Failure condition is not handled properly and the correct error code is not returned. | 7.8 |
2018-11-28 | CVE-2018-11264 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Possible buffer overflow in Ontario fingerprint code due to lack of input validation for the parameters coming into TZ from HLOS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SDA660. | 7.8 |
2018-11-28 | CVE-2017-18316 | Unspecified vulnerability in Qualcomm products Secure application can access QSEE kernel memory through Ontario kernel driver in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDA845, SDX24, SXR1130. | 7.8 |
2018-10-29 | CVE-2018-11884 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Improper input validation leads to buffer overflow while processing network list offload command in WLAN function in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660 | 7.8 |
2018-10-29 | CVE-2018-11882 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Incorrect bound check can lead to potential buffer overwrite in WLAN controller in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660. | 7.8 |
2018-10-29 | CVE-2018-11880 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Incorrect bound check can lead to potential buffer overwrite in WLAN function in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660. | 7.8 |
2018-10-29 | CVE-2018-11877 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products When the buffer length passed is very large in WLAN, bounds check could be bypassed leading to potential buffer overwrite in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660. | 7.8 |