Qualcomm Robotics RB5 Platform Firmware

CPE Details

Qualcomm Robotics RB5 Platform Firmware
-
2023-10-03
16h56 +00:00
2023-10-03
16h56 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:qualcomm:robotics_rb5_platform_firmware:-:*:*:*:*:*:*:*

Informations

Vendor

qualcomm

Product

robotics_rb5_platform_firmware

Version

-

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-33056 2024-12-02 10h18 +00:00 Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
8.4
Haute
CVE-2024-33044 2024-12-02 10h18 +00:00 Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
8.4
Haute
CVE-2024-38423 2024-11-04 10h05 +00:00 Memory corruption while processing GPU page table switch.
7.8
Haute
CVE-2024-38422 2024-11-04 10h04 +00:00 Memory corruption while processing voice packet with arbitrary data received from ADSP.
7.8
Haute
CVE-2024-38419 2024-11-04 10h04 +00:00 Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.
7.8
Haute
CVE-2024-38415 2024-11-04 10h04 +00:00 Memory corruption while handling session errors from firmware.
7.8
Haute
CVE-2024-38408 2024-11-04 10h04 +00:00 Cryptographic issue when a controller receives an LMP start encryption command under unexpected conditions.
9.1
Critique
CVE-2024-38397 2024-10-07 12h58 +00:00 Transient DOS while parsing probe response and assoc response frame.
7.5
Haute
CVE-2024-33073 2024-10-07 12h58 +00:00 Information disclosure while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
8.2
Haute
CVE-2024-33034 2024-08-05 14h21 +00:00 Memory corruption can occur if VBOs hold outdated or invalid GPU SMMU mappings, especially when the binding and reclaiming of memory buffers are performed at the same time.
8.4
Haute
CVE-2024-33028 2024-08-05 14h21 +00:00 Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.
8.4
Haute
CVE-2024-33026 2024-08-05 14h21 +00:00 Transient DOS while parsing probe response and assoc response frame when received frame length is less than max size of timestamp.
7.5
Haute
CVE-2024-33025 2024-08-05 14h21 +00:00 Transient DOS while parsing the BSS parameter change count or MLD capabilities fields of the ML IE.
7.5
Haute
CVE-2024-33024 2024-08-05 14h21 +00:00 Transient DOS while parsing the ML IE when a beacon with length field inside the common info of ML IE greater than the ML IE length.
7.5
Haute
CVE-2024-33023 2024-08-05 14h21 +00:00 Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events.
8.4
Haute
CVE-2024-33022 2024-08-05 14h21 +00:00 Memory corruption while allocating memory in HGSL driver.
8.4
Haute
CVE-2024-33021 2024-08-05 14h21 +00:00 Memory corruption while processing IOCTL call to set metainfo.
8.4
Haute
CVE-2024-33020 2024-08-05 14h21 +00:00 Transient DOS while processing TID-to-link mapping IE elements.
7.5
Haute
CVE-2024-33015 2024-08-05 14h21 +00:00 Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report.
7.5
Haute
CVE-2024-33014 2024-08-05 14h21 +00:00 Transient DOS while parsing ESP IE from beacon/probe response frame.
7.5
Haute
CVE-2024-33013 2024-08-05 14h21 +00:00 Transient DOS when driver accesses the ML IE memory and offset value is incremented beyond ML IE length.
7.5
Haute
CVE-2024-33012 2024-08-05 14h21 +00:00 Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon.
7.5
Haute
CVE-2024-33011 2024-08-05 14h21 +00:00 Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero.
7.5
Haute
CVE-2024-33010 2024-08-05 14h21 +00:00 Transient DOS while parsing fragments of MBSSID IE from beacon frame.
7.5
Haute
CVE-2024-23384 2024-08-05 14h21 +00:00 Memory corruption when the mapped pages in VBO are still mapped after reclaiming by shrinker.
8.4
Haute
CVE-2024-23382 2024-08-05 14h21 +00:00 Memory corruption while processing graphics kernel driver request to create DMA fence.
8.4
Haute
CVE-2024-23357 2024-08-05 14h21 +00:00 Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.
6.2
Moyen
CVE-2024-23355 2024-08-05 14h21 +00:00 Memory corruption when keymaster operation imports a shared key.
7.8
Haute
CVE-2024-23380 2024-07-01 14h17 +00:00 Memory corruption while handling user packets during VBO bind operation.
8.4
Haute
CVE-2024-23373 2024-07-01 14h17 +00:00 Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.
8.4
Haute
CVE-2024-23372 2024-07-01 14h17 +00:00 Memory corruption while invoking IOCTL call for GPU memory allocation and size param is greater than expected size.
8.4
Haute
CVE-2024-23368 2024-07-01 14h17 +00:00 Memory corruption when allocating and accessing an entry in an SMEM partition.
7.8
Haute
CVE-2024-21469 2024-07-01 14h17 +00:00 Memory corruption when an invoke call and a TEE call are bound for the same trusted application.
7.8
Haute
CVE-2024-21465 2024-07-01 14h17 +00:00 Memory corruption while processing key blob passed by the user.
7.8
Haute
CVE-2024-21462 2024-07-01 14h17 +00:00 Transient DOS while loading the TA ELF file.
7.1
Haute
CVE-2024-21461 2024-07-01 14h17 +00:00 Memory corruption while performing finish HMAC operation when context is freed by keymaster.
8.4
Haute
CVE-2023-43536 2024-02-06 05h47 +00:00 Transient DOS while parse fils IE with length equal to 1.
7.5
Haute
CVE-2023-43534 2024-02-06 05h47 +00:00 Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
9.8
Critique
CVE-2023-43522 2024-02-06 05h47 +00:00 Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
7.5
Haute
CVE-2023-43520 2024-02-06 05h47 +00:00 Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
9.8
Critique
CVE-2023-43513 2024-02-06 05h47 +00:00 Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.
7.8
Haute
CVE-2023-33072 2024-02-06 05h47 +00:00 Memory corruption in Core while processing control functions.
9.3
Critique
CVE-2023-33046 2024-02-06 05h46 +00:00 Memory corruption in Trusted Execution Environment while deinitializing an object used for license validation.
7.8
Haute
CVE-2023-43514 2024-01-02 05h38 +00:00 Memory corruption while invoking IOCTLs calls from user space for internal mem MAP and internal mem UNMAP.
8.4
Haute
CVE-2023-43511 2024-01-02 05h38 +00:00 Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.
7.5
Haute
CVE-2023-33120 2024-01-02 05h38 +00:00 Memory corruption in Audio when memory map command is executed consecutively in ADSP.
7.8
Haute
CVE-2023-33118 2024-01-02 05h38 +00:00 Memory corruption while processing Listen Sound Model client payload buffer when there is a request for Listen Sound session get parameter from ST HAL.
7.8
Haute
CVE-2023-33117 2024-01-02 05h38 +00:00 Memory corruption when HLOS allocates the response payload buffer to copy the data received from ADSP in response to AVCS_LOAD_MODULE command.
7.8
Haute
CVE-2023-33116 2024-01-02 05h38 +00:00 Transient DOS while parsing ieee80211_parse_mscs_ie in WIN WLAN driver.
7.5
Haute
CVE-2023-33114 2024-01-02 05h38 +00:00 Memory corruption while running NPU, when NETWORK_UNLOAD and (NETWORK_UNLOAD or NETWORK_EXECUTE_V2) commands are submitted at the same time.
8.4
Haute
CVE-2023-33113 2024-01-02 05h38 +00:00 Memory corruption when resource manager sends the host kernel a reply message with multiple fragments.
8.4
Haute
CVE-2023-33112 2024-01-02 05h38 +00:00 Transient DOS when WLAN firmware receives "reassoc response" frame including RIC_DATA element.
7.5
Haute
CVE-2023-33109 2024-01-02 05h38 +00:00 Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.
7.5
Haute
CVE-2023-33094 2024-01-02 05h38 +00:00 Memory corruption while running VK synchronization with KASAN enabled.
8.4
Haute
CVE-2023-33085 2024-01-02 05h38 +00:00 Memory corruption in wearables while processing data from AON.
7.8
Haute
CVE-2023-33062 2024-01-02 05h38 +00:00 Transient DOS in WLAN Firmware while parsing a BTM request.
7.5
Haute
CVE-2023-33033 2024-01-02 05h38 +00:00 Memory corruption in Audio during playback with speaker protection.
8.4
Haute
CVE-2023-33030 2024-01-02 05h38 +00:00 Memory corruption in HLOS while running playready use-case.
9.3
Critique
CVE-2023-33107 2023-12-05 03h04 +00:00 Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.
8.4
Haute
CVE-2023-33106 2023-12-05 03h04 +00:00 Memory corruption while submitting a large list of sync points in an AUX command to the IOCTL_KGSL_GPU_AUX_COMMAND.
8.4
Haute
CVE-2023-33098 2023-12-05 03h04 +00:00 Transient DOS while parsing WPA IES, when it is passed with length more than expected size.
7.5
Haute
CVE-2023-33089 2023-12-05 03h04 +00:00 Transient DOS when processing a NULL buffer while parsing WLAN vdev.
7.5
Haute
CVE-2023-33088 2023-12-05 03h04 +00:00 Memory corruption when processing cmd parameters while parsing vdev.
8.4
Haute
CVE-2023-33083 2023-12-05 03h04 +00:00 Memory corruption in WLAN Host while processing RRM beacon on the AP.
9.8
Critique
CVE-2023-33082 2023-12-05 03h04 +00:00 Memory corruption while sending an Assoc Request having BTM Query or BTM Response containing MBO IE.
9.8
Critique
CVE-2023-28588 2023-12-05 03h03 +00:00 Transient DOS in Bluetooth Host while rfc slot allocation.
7.5
Haute
CVE-2023-28586 2023-12-05 03h03 +00:00 Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.
6.5
Moyen
CVE-2023-28585 2023-12-05 03h03 +00:00 Memory corruption while loading an ELF segment in TEE Kernel.
8.8
Haute
CVE-2023-28546 2023-12-05 03h03 +00:00 Memory Corruption in SPS Application while exporting public key in sorter TA.
7.8
Haute
CVE-2023-28556 2023-11-07 05h26 +00:00 Cryptographic issue in HLOS during key management.
7.8
Haute
CVE-2023-28545 2023-11-07 05h26 +00:00 Memory corruption in TZ Secure OS while loading an app ELF.
8.2
Haute
CVE-2023-24852 2023-11-07 05h26 +00:00 Memory Corruption in Core due to secure memory access by user while loading modem image.
8.4
Haute
CVE-2023-33034 2023-10-03 05h00 +00:00 Memory corruption while parsing the ADSP response command.
7.8
Haute
CVE-2023-33029 2023-10-03 05h00 +00:00 Memory corruption in DSP Service during a remote call from HLOS to DSP.
8.4
Haute
CVE-2023-33027 2023-10-03 05h00 +00:00 Transient DOS in WLAN Firmware while parsing rsn ies.
7.5
Haute
CVE-2023-33026 2023-10-03 05h00 +00:00 Transient DOS in WLAN Firmware while parsing a NAN management frame.
7.5
Haute
CVE-2023-28539 2023-10-03 05h00 +00:00 Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.
7.8
Haute
CVE-2023-21673 2023-10-03 05h00 +00:00 Improper Access to the VM resource manager can lead to Memory Corruption.
8.7
Haute