Vulnerabilities > Qualcomm > Wcn6740 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-07-01 | CVE-2024-23368 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption when allocating and accessing an entry in an SMEM partition. | 7.8 |
2024-07-01 | CVE-2024-23372 | Integer Overflow or Wraparound vulnerability in Qualcomm products Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size. | 7.8 |
2024-07-01 | CVE-2024-23373 | Use After Free vulnerability in Qualcomm products Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released. | 7.8 |
2024-02-06 | CVE-2023-33067 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points. | 7.8 |
2024-02-06 | CVE-2023-33068 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption in Audio while processing IIR config data from AFE calibration block. | 7.8 |
2024-02-06 | CVE-2023-33069 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption in Audio while processing the calibration data returned from ACDB loader. | 7.8 |
2024-02-06 | CVE-2023-33072 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption in Core while processing control functions. | 7.8 |
2024-02-06 | CVE-2023-43513 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element. | 7.8 |
2024-02-06 | CVE-2023-43522 | NULL Pointer Dereference vulnerability in Qualcomm products Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL. | 7.5 |
2024-02-06 | CVE-2023-43523 | Reachable Assertion vulnerability in Qualcomm products Transient DOS while processing 11AZ RTT management action frame received through OTA. | 7.5 |