Vulnerabilities > Qualcomm > Snapdragon XR2 5G Platform Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-24853 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in HLOS while registering for key provisioning notify.
local
low complexity
qualcomm CWE-787
7.8
2023-10-03 CVE-2023-28539 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.
local
low complexity
qualcomm CWE-120
7.8
2023-10-03 CVE-2023-28540 Improper Authentication vulnerability in Qualcomm products
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
network
low complexity
qualcomm CWE-287
7.5
2023-10-03 CVE-2023-33026 Resource Exhaustion vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while parsing a NAN management frame.
network
low complexity
qualcomm CWE-400
7.5
2023-10-03 CVE-2023-33027 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in WLAN Firmware while parsing rsn ies.
network
low complexity
qualcomm CWE-125
7.5
2023-10-03 CVE-2023-33035 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption while invoking callback function of AFE from ADSP.
local
low complexity
qualcomm CWE-120
7.8
2023-09-05 CVE-2022-33275 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
local
low complexity
qualcomm CWE-129
7.8
2023-09-05 CVE-2023-28538 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in WIN Product while invoking WinAcpi update driver in the UEFI region.
local
low complexity
qualcomm CWE-787
7.8
2023-09-05 CVE-2023-28548 Improper Validation of Array Index vulnerability in Qualcomm products
Memory corruption in WLAN HAL while processing Tx/Rx commands from QDART.
local
low complexity
qualcomm CWE-129
7.8
2023-09-05 CVE-2023-28549 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload.
local
low complexity
qualcomm CWE-119
7.8