Vulnerabilities > Qualcomm > Snapdragon X65 5G Modem RF System Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-12-05 CVE-2023-33017 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
local
low complexity
qualcomm CWE-120
7.8
2023-12-05 CVE-2023-33018 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption while using the UIM diag command to get the operators name.
local
low complexity
qualcomm CWE-190
7.8
2023-12-05 CVE-2023-33022 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption in HLOS while invoking IOCTL calls from user-space.
local
low complexity
qualcomm CWE-190
7.8
2023-12-05 CVE-2023-33041 Reachable Assertion vulnerability in Qualcomm products
Under certain scenarios the WLAN Firmware will reach an assertion due to state confusion while looking up peer ids.
network
low complexity
qualcomm CWE-617
7.5
2023-12-05 CVE-2023-33042 Improper Input Validation vulnerability in Qualcomm products
Transient DOS in Modem after RRC Setup message is received.
network
low complexity
qualcomm CWE-20
7.5
2023-12-05 CVE-2023-33043 Reachable Assertion vulnerability in Qualcomm products
Transient DOS in Modem when a Beam switch request is made with a non-configured BWP.
network
low complexity
qualcomm CWE-617
7.5
2023-12-05 CVE-2023-33044 Reachable Assertion vulnerability in Qualcomm products
Transient DOS in Data modem while handling TLB control messages from the Network.
network
low complexity
qualcomm CWE-617
7.5
2023-12-05 CVE-2023-33053 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption in Kernel while parsing metadata.
local
low complexity
qualcomm CWE-129
7.8
2023-12-05 CVE-2023-33063 Use After Free vulnerability in Qualcomm products
Memory corruption in DSP Services during a remote call from HLOS to DSP.
local
low complexity
qualcomm CWE-416
7.8
2023-12-05 CVE-2023-33080 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
network
low complexity
qualcomm CWE-125
7.5