Vulnerabilities > Qualcomm > Snapdragon X72 5G Modem RF System Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-09-02 CVE-2024-38401 Use After Free vulnerability in Qualcomm products
Memory corruption while processing concurrent IOCTL calls.
local
low complexity
qualcomm CWE-416
7.8
2024-08-05 CVE-2024-21459 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while handling beacon or probe response frame in STA.
network
low complexity
qualcomm CWE-125
7.5
2024-08-05 CVE-2024-23355 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when keymaster operation imports a shared key.
local
low complexity
qualcomm CWE-787
7.8
2024-08-05 CVE-2024-33021 Use of Uninitialized Resource vulnerability in Qualcomm products
Memory corruption while processing IOCTL call to set metainfo.
local
low complexity
qualcomm CWE-908
7.8
2024-08-05 CVE-2024-33022 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption while allocating memory in HGSL driver.
local
low complexity
qualcomm CWE-190
7.8
2024-08-05 CVE-2024-33028 Use After Free vulnerability in Qualcomm products
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
local
low complexity
qualcomm CWE-416
7.8
2024-07-01 CVE-2024-21457 Out-of-bounds Read vulnerability in Qualcomm products
INformation disclosure while handling Multi-link IE in beacon frame.
network
low complexity
qualcomm CWE-125
7.5
2024-07-01 CVE-2024-21458 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while handling SA query action frame.
network
low complexity
qualcomm CWE-125
7.5
2024-07-01 CVE-2024-21461 Double Free vulnerability in Qualcomm products
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
local
low complexity
qualcomm CWE-415
7.8
2024-07-01 CVE-2024-21465 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption while processing key blob passed by the user.
local
low complexity
qualcomm CWE-125
7.8