Vulnerabilities > Qualcomm > Sg4150P Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-07-01 CVE-2024-21465 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption while processing key blob passed by the user.
local
low complexity
qualcomm CWE-125
7.8
2024-07-01 CVE-2024-23372 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size.
local
low complexity
qualcomm CWE-190
7.8
2024-07-01 CVE-2024-23373 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
local
low complexity
qualcomm CWE-416
7.8
2024-07-01 CVE-2024-23380 Use After Free vulnerability in Qualcomm products
Memory corruption while handling user packets during VBO bind operation.
local
low complexity
qualcomm CWE-416
7.8
2024-06-03 CVE-2023-43551 Improper Authentication vulnerability in Qualcomm products
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
network
low complexity
qualcomm CWE-287
7.5
2024-06-03 CVE-2023-43555 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in Video while parsing mp2 clip with invalid section length.
network
low complexity
qualcomm CWE-125
7.5
2024-05-06 CVE-2024-21471 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
local
low complexity
qualcomm CWE-416
7.8
2024-05-06 CVE-2024-21480 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while playing audio file having large-sized input buffer.
network
low complexity
qualcomm CWE-120
critical
9.8
2024-05-06 CVE-2024-23351 Unspecified vulnerability in Qualcomm products
Memory corruption as GPU registers beyond the last protected range can be accessed through LPAC submissions.
local
low complexity
qualcomm
7.8
2024-05-06 CVE-2024-23354 Use After Free vulnerability in Qualcomm products
Memory corruption when the IOCTL call is interrupted by a signal.
local
low complexity
qualcomm CWE-416
7.8