Vulnerabilities > Qualcomm > Snapdragon X70 Modem RF System Firmware

DATE CVE VULNERABILITY TITLE RISK
2024-02-06 CVE-2023-33072 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Core while processing control functions.
local
low complexity
qualcomm CWE-120
7.8
2024-02-06 CVE-2023-33076 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Core when updating rollback version for TA and OTA feature is enabled.
local
low complexity
qualcomm CWE-787
7.8
2024-02-06 CVE-2023-33046 Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products
Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
local
high complexity
qualcomm CWE-367
7.0
2024-02-06 CVE-2023-33049 Memory Leak vulnerability in Qualcomm products
Transient DOS in Multi-Mode Call Processor due to UE failure because of heap leakage.
network
low complexity
qualcomm CWE-401
7.5
2024-02-06 CVE-2023-33057 Improper Input Validation vulnerability in Qualcomm products
Transient DOS in Multi-Mode Call Processor while processing UE policy container.
network
low complexity
qualcomm CWE-20
7.5
2024-02-06 CVE-2023-33058 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in Modem while processing SIB5.
network
low complexity
qualcomm CWE-125
critical
9.1
2024-02-06 CVE-2023-33060 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in Core when DDR memory check is called while DDR is not initialized.
local
low complexity
qualcomm CWE-125
5.5
2024-01-02 CVE-2023-33014 Improper Input Validation vulnerability in Qualcomm products
Information disclosure in Core services while processing a Diag command.
low complexity
qualcomm CWE-20
6.8
2024-01-02 CVE-2023-33025 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.
network
low complexity
qualcomm CWE-120
critical
9.8
2024-01-02 CVE-2023-33030 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in HLOS while running playready use-case.
local
low complexity
qualcomm CWE-787
7.8