Vulnerabilities > Qualcomm > Smart Audio 400 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2025-02-03 CVE-2024-49834 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption while power-up or power-down sequence of the camera sensor.
local
low complexity
qualcomm CWE-129
7.8
2024-09-02 CVE-2024-33045 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
local
low complexity
qualcomm CWE-787
7.8
2024-09-02 CVE-2024-33050 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.
network
low complexity
qualcomm CWE-125
7.5
2024-09-02 CVE-2024-33051 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
network
low complexity
qualcomm CWE-125
7.5
2024-09-02 CVE-2024-33060 Use After Free vulnerability in Qualcomm products
Memory corruption when two threads try to map and unmap a single node simultaneously.
local
low complexity
qualcomm CWE-416
7.8
2024-09-02 CVE-2024-38402 Use After Free vulnerability in Qualcomm products
Memory corruption while processing IOCTL call for getting group info.
local
low complexity
qualcomm CWE-416
7.8
2024-06-03 CVE-2023-43551 Improper Authentication vulnerability in Qualcomm products
Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
network
low complexity
qualcomm CWE-287
7.5
2024-05-06 CVE-2024-21471 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
local
low complexity
qualcomm CWE-416
7.8
2024-04-01 CVE-2023-28547 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in SPS Application while requesting for public key in sorter TA.
local
low complexity
qualcomm CWE-787
7.8
2024-04-01 CVE-2023-33023 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while processing finish_sign command to pass a rsp buffer.
local
low complexity
qualcomm CWE-120
7.8