Vulnerabilities > Qualcomm > Wcd9380 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-12 CVE-2022-25733 NULL Pointer Dereference vulnerability in Qualcomm products
Denial of service in modem due to null pointer dereference while processing DNS packets
network
low complexity
qualcomm CWE-476
7.5
2023-02-12 CVE-2022-25734 Infinite Loop vulnerability in Qualcomm products
Denial of service in modem due to missing null check while processing IP packets with padding
network
low complexity
qualcomm CWE-835
7.5
2023-02-12 CVE-2022-25735 NULL Pointer Dereference vulnerability in Qualcomm products
Denial of service in modem due to missing null check while processing TCP or UDP packets from server
network
low complexity
qualcomm CWE-476
7.5
2023-02-12 CVE-2022-25738 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure in modem due to buffer over-red while performing checksum of packet received
network
low complexity
qualcomm CWE-125
7.5
2023-02-12 CVE-2022-33225 Use After Free vulnerability in Qualcomm products
Memory corruption due to use after free in trusted application environment.
local
low complexity
qualcomm CWE-416
7.8
2023-02-12 CVE-2022-33232 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption due to buffer copy without checking size of input while running memory sharing tests with large scattered memory.
local
low complexity
qualcomm CWE-120
7.8
2023-02-12 CVE-2022-33233 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption due to configuration weakness in modem wile sending command to write protected files.
local
low complexity
qualcomm CWE-787
7.8
2023-02-12 CVE-2022-33243 Unspecified vulnerability in Qualcomm products
Memory corruption due to improper access control in Qualcomm IPC.
local
low complexity
qualcomm
7.8
2023-02-12 CVE-2022-33246 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Memory corruption in Audio due to use of out-of-range pointer offset while Initiating a voice call session from user space with invalid session id.
local
low complexity
qualcomm CWE-119
7.8
2023-02-12 CVE-2022-33248 Integer Overflow or Wraparound vulnerability in Qualcomm products
Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http.
local
low complexity
qualcomm CWE-190
7.8