Vulnerabilities > Qualcomm > Wcn6856 Firmware > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-02-12 | CVE-2022-33280 | Access of Uninitialized Pointer vulnerability in Qualcomm products Memory corruption due to access of uninitialized pointer in Bluetooth HOST while processing the AVRCP packet. | 8.8 |
2023-02-12 | CVE-2022-33306 | Out-of-bounds Read vulnerability in Qualcomm products Transient DOS due to buffer over-read in WLAN while processing an incoming management frame with incorrectly filled IEs. | 7.5 |
2023-02-12 | CVE-2022-34145 | Out-of-bounds Read vulnerability in Qualcomm products Transient DOS due to buffer over-read in WLAN Host while parsing frame information. | 7.5 |
2023-02-12 | CVE-2022-34146 | Improper Input Validation vulnerability in Qualcomm products Transient DOS due to improper input validation in WLAN Host while parsing frame during defragmentation. | 7.5 |
2023-02-12 | CVE-2022-40502 | Improper Input Validation vulnerability in Qualcomm products Transient DOS due to improper input validation in WLAN Host. | 7.5 |
2023-02-12 | CVE-2022-40512 | Out-of-bounds Read vulnerability in Qualcomm products Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. | 7.5 |
2023-01-09 | CVE-2022-22088 | Out-of-bounds Write vulnerability in Qualcomm products Memory corruption in Bluetooth HOST due to buffer overflow while parsing the command response received from remote | 8.8 |
2023-01-09 | CVE-2022-25746 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption in kernel due to missing checks when updating the access rights of a memextent mapping. | 7.8 |
2023-01-09 | CVE-2022-33266 | Integer Overflow or Wraparound vulnerability in Qualcomm products Memory corruption in Audio due to integer overflow to buffer overflow while music playback of clips like amr,evrc,qcelp with modified content. | 7.8 |
2023-01-09 | CVE-2022-33276 | Classic Buffer Overflow vulnerability in Qualcomm products Memory corruption due to buffer copy without checking size of input in modem while receiving WMI_REQUEST_STATS_CMDID command. | 7.8 |