Vulnerabilities > Qualcomm > Snapdragon X55 5G Modem RF System Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-01-02 CVE-2023-33033 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Audio during playback with speaker protection.
local
low complexity
qualcomm CWE-787
7.8
2024-01-02 CVE-2023-33038 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while receiving a message in Bus Socket Transport Server.
local
low complexity
qualcomm CWE-787
7.8
2024-01-02 CVE-2023-33094 Use After Free vulnerability in Qualcomm products
Memory corruption while running VK synchronization with KASAN enabled.
local
low complexity
qualcomm CWE-416
7.8
2024-01-02 CVE-2023-33110 Race Condition vulnerability in Qualcomm products
The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.
local
high complexity
qualcomm CWE-362
7.0
2024-01-02 CVE-2023-33114 Use After Free vulnerability in Qualcomm products
Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time.
local
low complexity
qualcomm CWE-416
7.8
2024-01-02 CVE-2023-43511 Infinite Loop vulnerability in Qualcomm products
Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
network
low complexity
qualcomm CWE-835
7.5
2023-12-05 CVE-2023-21634 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in Radio Interface Layer while sending an SMS or writing an SMS to SIM.
local
low complexity
qualcomm CWE-787
7.8
2023-12-05 CVE-2023-22383 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in camera while installing a fd for a particular DMA buffer.
local
low complexity
qualcomm CWE-787
7.8
2023-12-05 CVE-2023-22668 Use After Free vulnerability in Qualcomm products
Memory Corruption in Audio while invoking IOCTLs calls from the user-space.
local
low complexity
qualcomm CWE-416
7.8
2023-12-05 CVE-2023-28546 Classic Buffer Overflow vulnerability in Qualcomm products
Memory Corruption in SPS Application while exporting public key in sorter TA.
local
low complexity
qualcomm CWE-120
7.8