Vulnerabilities > Qualcomm > Sm4250 AA Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-10-03 | CVE-2023-33035 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption while invoking callback function of AFE from ADSP. | 7.8 |
2023-09-05 | CVE-2022-33275 | Improper Validation of Array Index vulnerability in Qualcomm products Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range. | 7.8 |
2023-09-05 | CVE-2023-28560 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload. | 7.8 |
2023-06-06 | CVE-2022-33264 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. | 7.8 |
2023-06-06 | CVE-2022-40507 | Double Free vulnerability in Qualcomm products Memory corruption due to double free in Core while mapping HLOS address to the list. | 7.8 |
2023-06-06 | CVE-2022-40521 | Improper Authentication vulnerability in Qualcomm products Transient DOS due to improper authorization in Modem | 7.5 |
2023-06-06 | CVE-2022-40529 | Incorrect Authorization vulnerability in Qualcomm products Memory corruption due to improper access control in kernel while processing a mapping request from root process. | 7.8 |
2023-06-06 | CVE-2023-21628 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command. | 7.8 |
2023-06-06 | CVE-2023-21656 | Improper Input Validation vulnerability in Qualcomm products Memory corruption in WLAN HOST while receiving an WMI event from firmware. | 7.8 |
2023-06-06 | CVE-2023-21657 | Improper Input Validation vulnerability in Qualcomm products Memoru corruption in Audio when ADSP sends input during record use case. | 7.8 |