Vulnerabilities > Qualcomm > Sda660 Firmware

DATE CVE VULNERABILITY TITLE RISK
2018-11-28 CVE-2018-11264 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Possible buffer overflow in Ontario fingerprint code due to lack of input validation for the parameters coming into TZ from HLOS in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SDA660.
local
low complexity
qualcomm CWE-119
7.2
2018-11-28 CVE-2017-18316 Unspecified vulnerability in Qualcomm products
Secure application can access QSEE kernel memory through Ontario kernel driver in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in versions MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDA845, SDX24, SXR1130.
local
low complexity
qualcomm
7.2
2018-10-29 CVE-2018-11884 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Improper input validation leads to buffer overflow while processing network list offload command in WLAN function in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660
local
low complexity
qualcomm CWE-119
7.2
2018-10-29 CVE-2018-11882 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Incorrect bound check can lead to potential buffer overwrite in WLAN controller in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660.
local
low complexity
qualcomm CWE-119
7.2
2018-10-29 CVE-2018-11880 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Incorrect bound check can lead to potential buffer overwrite in WLAN function in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660.
local
low complexity
qualcomm CWE-119
7.2
2018-10-29 CVE-2018-11877 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
When the buffer length passed is very large in WLAN, bounds check could be bypassed leading to potential buffer overwrite in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660.
local
low complexity
qualcomm CWE-119
7.2
2018-10-29 CVE-2018-11876 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Lack of input validation while copying to buffer in WLAN will lead to a buffer overflow in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660.
local
low complexity
qualcomm CWE-119
7.2
2018-10-29 CVE-2018-11874 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Buffer overflow if the length of passphrase is more than 32 when setting up secure NDP connection in Snapdragon Mobile in version SD 835, SD 845, SD 850, SDA660.
local
low complexity
qualcomm CWE-119
7.2
2018-10-29 CVE-2018-11872 Improper Input Validation vulnerability in Qualcomm SD 845 Firmware, SD 850 Firmware and Sda660 Firmware
Improper input validation leads to buffer overwrite in the WLAN function that handles WMI commands in Snapdragon Mobile in version SD 845, SD 850, SDA660
local
low complexity
qualcomm CWE-20
7.2
2018-10-29 CVE-2018-11871 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Buffer overwrite can happen in WLAN function while processing set pdev parameter command due to lack of input validation in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version IPQ4019, IPQ8064, IPQ8074, MDM9206, MDM9607, MDM9635M, MDM9640, MDM9650, MSM8996AU, QCA6174A, QCA6564, QCA6574, QCA6574AU, QCA6584, QCA6584AU, QCA9377, QCA9378, QCA9379, QCA9531, QCA9558, QCA9563, QCA9880, QCA9886, QCA9980, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 600, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660, SDM630, SDM632, SDM636, SDM660, SDM710, SDX20, Snapdragon_High_Med_2016.
local
low complexity
qualcomm CWE-119
7.2