Qualcomm SNAPDRAGON 870 5G FIRMWARE -

CPE Details

Qualcomm SNAPDRAGON 870 5G FIRMWARE -
-
2023-07-10
09h07 +00:00
2023-09-02
00h30 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:o:qualcomm:snapdragon_870_5g_firmware:-:*:*:*:*:*:*:*

Informations

Vendor

qualcomm

Product

snapdragon_870_5g_firmware

Version

-

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2024-53027 2025-03-03 10h07 +00:00 Transient DOS may occur while processing the country IE.
7.5
Haute
CVE-2024-53014 2025-03-03 10h07 +00:00 Memory corruption may occur while validating ports and channels in Audio driver.
7.8
Haute
CVE-2024-43051 2025-03-03 10h07 +00:00 Information disclosure while deriving keys for a session for any Widevine use case.
5.5
Moyen
CVE-2024-38426 2025-03-03 10h07 +00:00 While processing the authentication message in UE, improper authentication may lead to information disclosure.
5.4
Moyen
CVE-2024-33051 2024-09-02 10h22 +00:00 Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.
7.5
Haute
CVE-2024-33042 2024-09-02 10h22 +00:00 Memory corruption when Alternative Frequency offset value is set to 255.
7.8
Haute
CVE-2023-33021 2023-09-05 06h24 +00:00 Memory corruption in Graphics while processing user packets for command submission.
8.4
Haute
CVE-2023-33015 2023-09-05 06h24 +00:00 Transient DOS in WLAN Firmware while interpreting MBSSID IE of a received beacon frame.
7.5
Haute
CVE-2023-28581 2023-09-05 06h24 +00:00 Memory corruption in WLAN Firmware while parsing receieved GTK Keys in GTK KDE.
9.8
Critique
CVE-2023-28573 2023-09-05 06h24 +00:00 Memory corruption in WLAN HAL while parsing WMI command parameters.
7.8
Haute
CVE-2023-28567 2023-09-05 06h24 +00:00 Memory corruption in WLAN HAL while handling command through WMI interfaces.
7.8
Haute
CVE-2023-28577 2023-08-08 09h15 +00:00 In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel address.
7.8
Haute
CVE-2023-28576 2023-08-08 09h15 +00:00 The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel accesses it. In other words, user mode may race and modify the packet header (e.g. header.count), causing checks (e.g. size checks) in kernel code to be invalid. This may lead to out-of-bounds read/write issues.
7
Haute
CVE-2023-28575 2023-08-08 09h15 +00:00 The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
7.8
Haute
CVE-2023-28542 2023-07-04 04h46 +00:00 Memory Corruption in WLAN HOST while fetching TX status information.
7.8
Haute
CVE-2023-28541 2023-07-04 04h46 +00:00 Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.
7.8
Haute
CVE-2023-24854 2023-07-04 04h46 +00:00 Memory Corruption in WLAN HOST while parsing QMI WLAN Firmware response message.
7.8
Haute
CVE-2023-24851 2023-07-04 04h46 +00:00 Memory Corruption in WLAN HOST while parsing QMI response message from firmware.
7.8
Haute
CVE-2023-22667 2023-07-04 04h46 +00:00 Memory Corruption in Audio while allocating the ion buffer during the music playback.
8.4
Haute
CVE-2023-22387 2023-07-04 04h46 +00:00 Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
7.8
Haute
CVE-2023-21638 2023-07-04 04h46 +00:00 Memory corruption in Video while calling APIs with different instance ID than the one received in initialization.
7.8
Haute
CVE-2023-21637 2023-07-04 04h46 +00:00 Memory corruption in Linux while calling system configuration APIs.
7.8
Haute
CVE-2023-21635 2023-07-04 04h46 +00:00 Memory Corruption in Data Network Stack & Connectivity when sim gets detected on telephony.
7.8
Haute
CVE-2023-21633 2023-07-04 04h46 +00:00 Memory Corruption in Linux while processing QcRilRequestImsRegisterMultiIdentityMessage request.
7.8
Haute
CVE-2023-21631 2023-07-04 04h46 +00:00 Weak Configuration due to improper input validation in Modem while processing LTE security mode command message received from network.
9.8
Critique
CVE-2023-21629 2023-07-04 04h46 +00:00 Memory Corruption in Modem due to double free while parsing the PKCS15 sim files.
6.8
Moyen