Vulnerabilities > Qualcomm > Wcd9385 Firmware

DATE CVE VULNERABILITY TITLE RISK
2023-07-04 CVE-2023-24854 Out-of-bounds Write vulnerability in Qualcomm products
Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message.
local
low complexity
qualcomm CWE-787
7.8
2023-07-04 CVE-2023-28541 Out-of-bounds Read vulnerability in Qualcomm products
Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.
local
low complexity
qualcomm CWE-125
7.8
2023-07-04 CVE-2023-28542 Out-of-bounds Read vulnerability in Qualcomm products
Memory Corruption in WLAN HOST while fetching TX status information.
local
low complexity
qualcomm CWE-125
7.8
2023-06-06 CVE-2022-22060 Reachable Assertion vulnerability in Qualcomm products
Assertion occurs while processing Reconfiguration message due to improper validation
network
low complexity
qualcomm CWE-617
7.5
2023-06-06 CVE-2022-22076 Unspecified vulnerability in Qualcomm products
information disclosure due to cryptographic issue in Core during RPMB read request.
local
low complexity
qualcomm
5.5
2023-06-06 CVE-2022-33224 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in core due to buffer copy without check9ing the size of input while processing ioctl queries.
local
low complexity
qualcomm CWE-120
7.8
2023-06-06 CVE-2022-33226 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption due to buffer copy without checking the size of input in Core while processing ioctl commands from diag client applications.
local
low complexity
qualcomm CWE-120
7.8
2023-06-06 CVE-2022-33230 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption in FM Host due to buffer copy without checking the size of input in FM Host
local
low complexity
qualcomm CWE-120
7.8
2023-06-06 CVE-2022-33251 Reachable Assertion vulnerability in Qualcomm products
Transient DOS due to reachable assertion in Modem because of invalid network configuration.
network
low complexity
qualcomm CWE-617
7.5
2023-06-06 CVE-2022-33263 Use After Free vulnerability in Qualcomm products
Memory corruption due to use after free in Core when multiple DCI clients register and deregister.
local
low complexity
qualcomm CWE-416
7.8