Vulnerabilities > Qualcomm > Snapdragon 720G Mobile Platform Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-07-01 CVE-2024-21465 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption while processing key blob passed by the user.
local
low complexity
qualcomm CWE-125
7.8
2024-07-01 CVE-2024-23373 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
local
low complexity
qualcomm CWE-416
7.8
2024-02-06 CVE-2023-43518 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in video while parsing invalid mp2 clip.
network
low complexity
qualcomm CWE-787
critical
9.8
2024-02-06 CVE-2023-43519 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.
network
low complexity
qualcomm CWE-120
critical
9.8
2024-01-02 CVE-2023-33030 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in HLOS while running playready use-case.
local
low complexity
qualcomm CWE-787
7.8
2024-01-02 CVE-2023-33032 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
local
low complexity
qualcomm CWE-787
7.8
2024-01-02 CVE-2023-33033 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Audio during playback with speaker protection.
local
low complexity
qualcomm CWE-787
7.8
2024-01-02 CVE-2023-33038 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while receiving a message in Bus Socket Transport Server.
local
low complexity
qualcomm CWE-787
7.8
2024-01-02 CVE-2023-33110 Race Condition vulnerability in Qualcomm products
The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.
local
high complexity
qualcomm CWE-362
7.0
2024-01-02 CVE-2023-33114 Use After Free vulnerability in Qualcomm products
Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time.
local
low complexity
qualcomm CWE-416
7.8