Vulnerabilities > Qualcomm > Snapdragon 855 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-09-05 CVE-2023-33021 Use After Free vulnerability in Qualcomm products
Memory corruption in Graphics while processing user packets for command submission.
local
low complexity
qualcomm CWE-416
7.8
2023-08-08 CVE-2023-28575 Type Confusion vulnerability in Qualcomm products
The cam_get_device_priv function does not check the type of handle being returned (device/session/link).
local
low complexity
qualcomm CWE-843
7.8
2023-07-04 CVE-2023-21629 Double Free vulnerability in Qualcomm products
Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.
low complexity
qualcomm CWE-415
6.8
2023-07-04 CVE-2023-21631 Unspecified vulnerability in Qualcomm products
Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.
network
low complexity
qualcomm
critical
9.8
2023-07-04 CVE-2023-21633 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.
local
low complexity
qualcomm CWE-787
7.8
2023-07-04 CVE-2023-21635 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony.
local
low complexity
qualcomm CWE-787
7.8
2023-07-04 CVE-2023-21637 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Linux while calling system configuration APIs.
local
low complexity
qualcomm CWE-787
7.8
2023-07-04 CVE-2023-21638 Incorrect Type Conversion or Cast vulnerability in Qualcomm products
Memory corruption in Video while calling APIs with different instance ID than the one received in initialization.
local
low complexity
qualcomm CWE-704
7.8
2023-07-04 CVE-2023-21639 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Audio while processing sva_model_serializer using memory size passed by HIDL client.
local
low complexity
qualcomm CWE-787
7.8
2023-07-04 CVE-2023-22387 Unspecified vulnerability in Qualcomm products
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
local
low complexity
qualcomm
7.8