Vulnerabilities > Qualcomm > Snapdragon X70 Modem RF System Firmware
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-06-06 | CVE-2022-40523 | Exposure of Resource to Wrong Sphere vulnerability in Qualcomm products Information disclosure in Kernel due to indirect branch misprediction. | 5.5 |
2023-06-06 | CVE-2022-40536 | Improper Authentication vulnerability in Qualcomm products Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network. | 7.5 |
2023-06-06 | CVE-2022-40538 | Reachable Assertion vulnerability in Qualcomm products Transient DOS due to reachable assertion in modem while processing sib with incorrect values from network. | 7.5 |
2023-05-02 | CVE-2022-40504 | Reachable Assertion vulnerability in Qualcomm products Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network. | 7.5 |
2023-05-02 | CVE-2022-33305 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH. | 7.5 |
2023-05-02 | CVE-2022-34144 | Reachable Assertion vulnerability in Qualcomm products Transient DOS due to reachable assertion in Modem during OSI decode scheduling. | 7.5 |
2023-05-02 | CVE-2022-40508 | Reachable Assertion vulnerability in Qualcomm products Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported. | 7.5 |
2023-04-13 | CVE-2022-33231 | Double Free vulnerability in Qualcomm products Memory corruption due to double free in core while initializing the encryption key. | 7.8 |
2023-04-13 | CVE-2022-33269 | Integer Overflow or Wraparound vulnerability in Qualcomm products Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. | 7.8 |
2023-04-13 | CVE-2022-33270 | Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in Qualcomm products Transient DOS due to time-of-check time-of-use race condition in Modem while processing RRC Reconfiguration message. | 5.9 |