Vulnerabilities > Qualcomm > Video Collaboration VC3 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2025-02-03 CVE-2024-38411 Use After Free vulnerability in Qualcomm products
Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
local
low complexity
qualcomm CWE-416
7.8
2025-01-06 CVE-2024-33041 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when input parameter validation for number of fences is missing for fence frame IOCTL calls,
local
low complexity
qualcomm CWE-787
7.8
2025-01-06 CVE-2024-33055 Use After Free vulnerability in Qualcomm products
Memory corruption while invoking IOCTL calls to unmap the DMA buffers.
local
low complexity
qualcomm CWE-416
7.8
2025-01-06 CVE-2024-45541 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption when IOCTL call is invoked from user-space to read board data.
local
low complexity
qualcomm CWE-120
7.8
2025-01-06 CVE-2024-45542 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.
local
low complexity
qualcomm CWE-787
7.8
2025-01-06 CVE-2024-45558 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS can occur when the driver parses the per STA profile IE and tries to access the EXTN element ID without checking the IE length.
network
low complexity
qualcomm CWE-125
7.5
2024-10-07 CVE-2024-43047 Use After Free vulnerability in Qualcomm products
Memory corruption while maintaining memory maps of HLOS memory.
local
low complexity
qualcomm CWE-416
7.8
2024-09-02 CVE-2024-33038 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption while passing untrusted/corrupted pointers from DSP to EVA.
local
low complexity
qualcomm CWE-787
7.8
2024-09-02 CVE-2024-33042 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when Alternative Frequency offset value is set to 255.
local
low complexity
qualcomm CWE-787
7.8
2024-09-02 CVE-2024-33045 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when BTFM client sends new messages over Slimbus to ADSP.
local
low complexity
qualcomm CWE-787
7.8