Vulnerabilities > Qualcomm > Wcn3680B Firmware > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-07 CVE-2024-23375 Classic Buffer Overflow vulnerability in Qualcomm products
Memory corruption during the network scan request.
local
low complexity
qualcomm CWE-120
6.7
2024-09-02 CVE-2024-33043 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS while handling PS event when Program Service name length offset value is set to 255.
local
low complexity
qualcomm CWE-125
5.5
2024-08-05 CVE-2024-23357 NULL Pointer Dereference vulnerability in Qualcomm products
Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
local
low complexity
qualcomm CWE-476
5.5
2024-05-06 CVE-2023-43527 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure while parsing dts header atom in Video.
local
low complexity
qualcomm CWE-125
5.5
2024-05-06 CVE-2023-43528 Out-of-bounds Read vulnerability in Qualcomm products
Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.
local
low complexity
qualcomm CWE-125
5.5
2023-12-05 CVE-2023-28586 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Qualcomm products
Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
local
low complexity
qualcomm CWE-119
6.5
2023-12-05 CVE-2023-33070 Improper Authentication vulnerability in Qualcomm products
Transient DOS in Automotive OS due to improper authentication to the secure IO calls.
local
low complexity
qualcomm CWE-287
5.5
2023-11-07 CVE-2023-28554 Unspecified vulnerability in Qualcomm products
Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.
local
low complexity
qualcomm
5.5
2023-09-05 CVE-2023-21667 Out-of-bounds Read vulnerability in Qualcomm products
Transient DOS in Bluetooth HOST while passing descriptor to validate the blacklisted BT keyboard.
low complexity
qualcomm CWE-125
6.5
2023-08-08 CVE-2023-21647 Improper Input Validation vulnerability in Qualcomm products
Information disclosure in Bluetooth when an GATT packet is received due to improper input validation.
network
low complexity
qualcomm CWE-20
6.5