Vulnerabilities > Qualcomm > Wcn3990 Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2024-08-05 CVE-2024-33023 Use After Free vulnerability in Qualcomm products
Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.
local
low complexity
qualcomm CWE-416
7.8
2024-08-05 CVE-2024-33027 Unspecified vulnerability in Qualcomm products
Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table.
local
low complexity
qualcomm
7.8
2024-08-05 CVE-2024-33028 Use After Free vulnerability in Qualcomm products
Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
local
low complexity
qualcomm CWE-416
7.8
2024-08-05 CVE-2024-33034 Use After Free vulnerability in Qualcomm products
Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.
local
low complexity
qualcomm CWE-416
7.8
2024-07-01 CVE-2024-21461 Double Free vulnerability in Qualcomm products
Memory corruption while performing finish HMAC operation when context is freed by keymaster.
local
low complexity
qualcomm CWE-415
7.8
2024-07-01 CVE-2024-21465 Out-of-bounds Read vulnerability in Qualcomm products
Memory corruption while processing key blob passed by the user.
local
low complexity
qualcomm CWE-125
7.8
2024-07-01 CVE-2024-21469 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
local
low complexity
qualcomm CWE-787
7.8
2024-07-01 CVE-2024-23373 Use After Free vulnerability in Qualcomm products
Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
local
low complexity
qualcomm CWE-416
7.8
2024-07-01 CVE-2024-23380 Use After Free vulnerability in Qualcomm products
Memory corruption while handling user packets during VBO bind operation.
local
low complexity
qualcomm CWE-416
7.8
2024-02-06 CVE-2023-33067 Out-of-bounds Write vulnerability in Qualcomm products
Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.
local
low complexity
qualcomm CWE-787
7.8