Vulnerabilities > Qualcomm > Snapdragon 712 Mobile Platform Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-12-05 CVE-2023-28551 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
local
low complexity
qualcomm CWE-787
7.8
2023-12-05 CVE-2023-28585 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption while loading an ELF segment in TEE Kernel.
local
low complexity
qualcomm CWE-119
8.8
2023-12-05 CVE-2023-28586 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
local
low complexity
qualcomm CWE-119
6.5
2023-12-05 CVE-2023-33088 NULL Pointer Dereference vulnerability in Qualcomm products
Memory corruption when processing cmd parameters while parsing vdev.
local
low complexity
qualcomm CWE-476
7.8
2023-11-07 CVE-2023-22388 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in Multi-mode Call Processor while processing bit mask API.
network
low complexity
qualcomm CWE-787
critical
9.8
2023-11-07 CVE-2023-28563 Unspecified vulnerability in Qualcomm products
Information disclosure in IOE Firmware while handling WMI command.
local
low complexity
qualcomm
5.5
2023-11-07 CVE-2023-28566 Unspecified vulnerability in Qualcomm products
Information disclosure in WLAN HAL while handling the WMI state info command.
local
low complexity
qualcomm
5.5
2023-11-07 CVE-2023-28568 Unspecified vulnerability in Qualcomm products
Information disclosure in WLAN HAL when reception status handler is called.
local
low complexity
qualcomm
5.5
2023-11-07 CVE-2023-28569 Unspecified vulnerability in Qualcomm products
Information disclosure in WLAN HAL while handling command through WMI interfaces.
local
low complexity
qualcomm
5.5
2023-10-03 CVE-2023-22385 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
network
low complexity
qualcomm CWE-787
critical
9.8