Vulnerabilities > Qualcomm > Wcd9370 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-01-09 | CVE-2022-33276 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption due to buffer copy without checking size of input in modem while receiving WMI_REQUEST_STATS_CMDID command. | 7.8 |
2023-01-09 | CVE-2022-40516 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in Core due to stack-based buffer overflow. | 7.8 |
2023-01-09 | CVE-2022-40517 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in core due to stack-based buffer overflow | 7.8 |
2023-01-09 | CVE-2022-40520 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption due to stack-based buffer overflow in Core | 7.8 |
2022-12-13 | CVE-2022-25672 | Reachable Assertion vulnerability in Qualcomm products Denial of service in MODEM due to reachable assertion while processing SIB1 with invalid Bandwidth in Snapdragon Mobile | 7.5 |
2022-12-13 | CVE-2022-25677 | Use After Free vulnerability in Qualcomm products Memory corruption in diag due to use after free while processing dci packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking | 7.8 |
2022-12-13 | CVE-2022-25681 | Unspecified vulnerability in Qualcomm products Possible memory corruption in kernel while performing memory access due to hypervisor not correctly invalidated the processor translation caches in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile | 7.8 |
2022-12-13 | CVE-2022-25682 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products Memory corruption in MODEM UIM due to usage of out of range pointer offset while decoding command from card in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables | 7.8 |
2022-12-13 | CVE-2022-25685 | Unspecified vulnerability in Qualcomm products Denial of service in Modem module due to improper authorization while error handling in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables | 7.5 |
2022-12-13 | CVE-2022-25691 | Reachable Assertion vulnerability in Qualcomm products Denial of service in Modem due to reachable assertion while processing SIB1 with invalid SCS and bandwidth settings in Snapdragon Mobile | 7.5 |