Qualcomm C-V2X 9150 Firmware

CPE Details

Qualcomm C-V2X 9150 Firmware
-
2023-04-20
09h34 +00:00
2023-08-29
09h33 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:qualcomm:c-v2x_9150_firmware:-:*:*:*:*:*:*:*

Informations

Vendor

qualcomm

Product

c-v2x_9150_firmware

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2024-43051 2025-03-03 10h07 +00:00 Information disclosure while deriving keys for a session for any Widevine use case.
5.5
Medium
CVE-2024-38418 2025-02-03 16h51 +00:00 Memory corruption while parsing the memory map info in IOCTL calls.
7.8
High
CVE-2024-38417 2025-02-03 16h51 +00:00 Information disclosure while processing IO control commands.
6.1
Medium
CVE-2024-38416 2025-02-03 16h51 +00:00 Information disclosure during audio playback.
6.1
Medium
CVE-2024-33067 2025-01-06 10h33 +00:00 Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received from sound model driver.
6.1
Medium
CVE-2024-33053 2024-12-02 10h18 +00:00 Memory corruption when multiple threads try to unregister the CVP buffer at the same time.
6.7
Medium
CVE-2024-33037 2024-12-02 10h18 +00:00 Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
6.1
Medium
CVE-2024-33036 2024-12-02 10h18 +00:00 Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.
6.7
Medium
CVE-2024-38423 2024-11-04 10h05 +00:00 Memory corruption while processing GPU page table switch.
7.8
High
CVE-2024-38422 2024-11-04 10h04 +00:00 Memory corruption while processing voice packet with arbitrary data received from ADSP.
7.8
High
CVE-2024-33032 2024-11-04 10h04 +00:00 Memory corruption when the user application modifies the same shared memory asynchronously when kernel is accessing it.
6.7
Medium
CVE-2024-38401 2024-09-02 10h22 +00:00 Memory corruption while processing concurrent IOCTL calls.
7.8
High
CVE-2024-33060 2024-09-02 10h22 +00:00 Memory corruption when two threads try to map and unmap a single node simultaneously.
8.4
High
CVE-2024-33027 2024-08-05 14h21 +00:00 Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table.
8.4
High
CVE-2024-23356 2024-08-05 14h21 +00:00 Memory corruption during session sign renewal request calls in HLOS.
7.8
High
CVE-2024-23353 2024-08-05 14h21 +00:00 Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.
7.5
High
CVE-2024-23373 2024-07-01 14h17 +00:00 Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
8.4
High
CVE-2024-21462 2024-07-01 14h17 +00:00 Transient DOS while loading the TA ELF file.
7.1
High
CVE-2024-21461 2024-07-01 14h17 +00:00 Memory corruption while performing finish HMAC operation when context is freed by keymaster.
8.4
High
CVE-2023-43551 2024-06-03 10h05 +00:00 Cryptographic issue while performing attach with a LTE network, a rogue base station can skip the authentication phase and immediately send the Security Mode Command.
9.1
Critical
CVE-2024-21475 2024-05-06 14h32 +00:00 Memory corruption when the payload received from firmware is not as per the expected protocol size.
7.8
High
CVE-2024-21471 2024-05-06 14h32 +00:00 Memory corruption when IOMMU unmap of a GPU buffer fails in Linux.
8.4
High
CVE-2023-43528 2024-05-06 14h32 +00:00 Information disclosure when the ADSP payload size received in HLOS in response to Audio Stream Manager matrix session is less than this expected size.
6.1
Medium
CVE-2023-43521 2024-05-06 14h32 +00:00 Memory corruption when multiple listeners are being registered with the same file descriptor.
7.8
High
CVE-2024-21468 2024-04-01 15h06 +00:00 Memory corruption when there is failed unmap operation in GPU.
8.4
High
CVE-2024-21454 2024-04-01 15h06 +00:00 Transient DOS while decoding the ToBeSignedMessage in Automotive Telematics.
7.5
High
CVE-2024-21453 2024-04-01 15h06 +00:00 Transient DOS while decoding message of size that exceeds the available system memory.
7.5
High
CVE-2024-21452 2024-04-01 15h06 +00:00 Transient DOS while decoding an ASN.1 OER message containing a SEQUENCE of unknown extensions.
7.5
High
CVE-2023-33111 2024-04-01 15h05 +00:00 Information disclosure when VI calibration state set by ADSP is greater than MAX_FBSP_STATE in the response payload to AFE calibration command.
5.5
Medium
CVE-2023-33023 2024-04-01 15h05 +00:00 Memory corruption while processing finish_sign command to pass a rsp buffer.
8.4
High
CVE-2023-28547 2024-04-01 15h05 +00:00 Memory corruption in SPS Application while requesting for public key in sorter TA.
8.4
High
CVE-2023-33066 2024-03-04 10h48 +00:00 Memory corruption in Audio while processing RT proxy port register driver.
8.4
High
CVE-2023-28578 2024-03-04 10h48 +00:00 Memory corruption in Core Services while executing the command for removing a single event listener.
9.3
Critical
CVE-2023-43513 2024-02-06 05h47 +00:00 Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
7.8
High
CVE-2023-33077 2024-02-06 05h47 +00:00 Memory corruption in HLOS while converting from authorization token to HIDL vector.
7.8
High
CVE-2023-33069 2024-02-06 05h47 +00:00 Memory corruption in Audio while processing the calibration data returned from ACDB loader.
7.8
High
CVE-2023-33068 2024-02-06 05h47 +00:00 Memory corruption in Audio while processing IIR config data from AFE calibration block.
7.8
High
CVE-2023-33067 2024-02-06 05h47 +00:00 Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.
7.8
High
CVE-2023-33065 2024-02-06 05h47 +00:00 Information disclosure in Audio while accessing AVCS services from ADSP payload.
7.1
High
CVE-2023-33064 2024-02-06 05h47 +00:00 Transient DOS in Audio when invoking callback function of ASM driver.
5.5
Medium
CVE-2023-33120 2024-01-02 05h38 +00:00 Memory corruption in Audio when memory map command is executed consecutively in ADSP.
7.8
High
CVE-2023-33114 2024-01-02 05h38 +00:00 Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time.
8.4
High
CVE-2023-33033 2024-01-02 05h38 +00:00 Memory corruption in Audio during playback with speaker protection.
8.4
High
CVE-2023-33032 2024-01-02 05h38 +00:00 Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.
9.3
Critical
CVE-2023-33030 2024-01-02 05h38 +00:00 Memory corruption in HLOS while running playready use-case.
9.3
Critical
CVE-2023-33107 2023-12-05 03h04 +00:00 Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.
8.4
High
CVE-2023-33070 2023-12-05 03h04 +00:00 Transient DOS in Automotive OS due to improper authentication to the secure IO calls.
7.1
High
CVE-2023-33063 2023-12-05 03h04 +00:00 Memory corruption in DSP Services during a remote call from HLOS to DSP.
7.8
High
CVE-2023-33018 2023-12-05 03h04 +00:00 Memory corruption while using the UIM diag command to get the operators name.
7.8
High
CVE-2023-33017 2023-12-05 03h03 +00:00 Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
7.8
High
CVE-2023-28586 2023-12-05 03h03 +00:00 Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
6.5
Medium
CVE-2023-28585 2023-12-05 03h03 +00:00 Memory corruption while loading an ELF segment in TEE Kernel.
8.8
High
CVE-2023-28551 2023-12-05 03h03 +00:00 Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.
7.8
High
CVE-2023-28550 2023-12-05 03h03 +00:00 Memory corruption in MPP performance while accessing DSM watermark using external memory address.
7.8
High
CVE-2023-28546 2023-12-05 03h03 +00:00 Memory Corruption in SPS Application while exporting public key in sorter TA.
7.8
High
CVE-2023-22383 2023-12-05 03h03 +00:00 Memory Corruption in camera while installing a fd for a particular DMA buffer.
7.8
High
CVE-2023-33059 2023-11-07 05h26 +00:00 Memory corruption in Audio while processing the VOC packet data from ADSP.
7.8
High
CVE-2023-33031 2023-11-07 05h26 +00:00 Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.
7.8
High
CVE-2023-28556 2023-11-07 05h26 +00:00 Cryptographic issue in HLOS during key management.
7.8
High
CVE-2023-28554 2023-11-07 05h26 +00:00 Information Disclosure in Qualcomm IPC while reading values from shared memory in VM.
6.1
Medium
CVE-2023-24852 2023-11-07 05h26 +00:00 Memory Corruption in Core due to secure memory access by user while loading modem image.
8.4
High
CVE-2023-22388 2023-11-07 05h26 +00:00 Memory Corruption in Multi-mode Call Processor while processing bit mask API.
9.8
Critical
CVE-2023-24848 2023-10-03 05h00 +00:00 Information Disclosure in Data Modem while performing a VoLTE call with an undefined RTCP FB line value.
8.2
High
CVE-2023-24847 2023-10-03 05h00 +00:00 Transient DOS in Modem while allocating DSM items.
7.5
High
CVE-2023-22385 2023-10-03 05h00 +00:00 Memory Corruption in Data Modem while making a MO call or MT VOLTE call.
9.8
Critical
CVE-2023-33020 2023-09-05 06h24 +00:00 Transient DOS in WLAN Host when an invalid channel (like channel out of range) is received in STA during CSA IE.
7.5
High
CVE-2023-33019 2023-09-05 06h24 +00:00 Transient DOS in WLAN Host while doing channel switch announcement (CSA), when a mobile station receives invalid channel in CSA IE.
7.5
High
CVE-2023-28575 2023-08-08 09h15 +00:00 The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
7.8
High
CVE-2023-28542 2023-07-04 04h46 +00:00 Memory Corruption in WLAN HOST while fetching TX status information.
7.8
High
CVE-2023-28541 2023-07-04 04h46 +00:00 Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.
7.8
High
CVE-2023-22387 2023-07-04 04h46 +00:00 Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
7.8
High
CVE-2023-21631 2023-07-04 04h46 +00:00 Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.
9.8
Critical
CVE-2023-21629 2023-07-04 04h46 +00:00 Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.
6.8
Medium
CVE-2022-40529 2023-06-06 07h39 +00:00 Memory corruption due to improper access control in kernel while processing a mapping request from root process.
7.8
High
CVE-2022-40521 2023-06-06 07h38 +00:00 Transient DOS due to improper authorization in Modem
7.5
High
CVE-2022-40507 2023-06-06 07h38 +00:00 Memory corruption due to double free in Core while mapping HLOS address to the list.
8.4
High
CVE-2022-33264 2023-06-06 07h38 +00:00 Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
7.9
High
CVE-2022-22076 2023-06-06 07h38 +00:00 information disclosure due to cryptographic issue in Core during RPMB read request.
7.1
High
CVE-2023-21665 2023-05-02 05h08 +00:00 Memory corruption in Graphics while importing a file.
8.4
High
CVE-2022-40503 2023-04-04 04h46 +00:00 Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
8.2
High
CVE-2022-33302 2023-04-04 04h46 +00:00 Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length.
7.8
High
CVE-2022-33289 2023-04-04 04h46 +00:00 Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
6.8
Medium
CVE-2022-33231 2023-04-04 04h46 +00:00 Memory corruption due to double free in core while initializing the encryption key.
9.3
Critical