Vulnerability index

Browse CVEs

1,832 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Mdm9205 Firmware HIGH 7.8
CVE-2019-2319

HLOS could corrupt CPZ page table memory for S1 managed VMs in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT,…

Mitigation only
Fix from $1,950 2019-12-12
Apq8009 Firmware HIGH 7.8
CVE-2019-2321

Incorrect length used while validating the qsee log buffer sent from HLOS which could then lead to remap conflict in Snapdragon Auto, Snapdragon Comp…

Mitigation only
Fix from $1,950 2019-12-12
Apq8053 Firmware HIGH 7.5
CVE-2019-2337

While Skipping unknown IES, EMM is reading the buffer even if the no of bytes to read are more than message length which may cause device to shutdown…

Mitigation only
Fix from $1,950 2019-12-12
Mdm9205 Firmware HIGH 7.1
CVE-2019-2338

Crafted image that has a valid signature from a non-QC entity can be loaded which can read/write memory that belongs to the secure world in Snapdrago…

Mitigation only
Fix from $1,950 2019-12-12
Apq8009 Firmware CRITICAL 9.8
CVE-2019-10559

Accessing data buffer beyond the available data while parsing ogg clip can lead to null-pointer dereference and then memory corruption in Snapdragon …

Mitigation only
Fix from $2,300 2019-12-12
Apq8017 Firmware HIGH 7.8
CVE-2019-10592

Possible integer overflow while multiplying two integers of 32 bit in QDCM API of get display modes as there is no check on the maximum mode count in…

Mitigation only
Fix from $1,950 2019-12-12
Apq8009 Firmware HIGH 7.8
CVE-2019-2288

Out of bound write in TZ while copying the secure dump structure on HLOS provided buffer as a part of memory dump in Snapdragon Auto, Snapdragon Comp…

Mitigation only
Fix from $1,950 2019-12-12
Qca6390 Firmware MEDIUM 5.5
CVE-2019-10618

Driver may access an invalid address while processing IO control due to lack of check of address validation in Snapdragon Connectivity in QCA6390

Mitigation only
Fix from $1,600 2019-12-12
Apq8053 Firmware CRITICAL 9.8
CVE-2019-10493

Position determination accuracy may be degraded due to wrongly decoded information in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, S…

No fix yet
Fix from $2,300 2019-12-12
Apq8009 Firmware CRITICAL 9.8
CVE-2019-10511

Possibility of memory overflow while decoding GSNDCP compressed mode PDU in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon …

Mitigation only
Fix from $2,300 2019-12-12
Apq8009 Firmware HIGH 7.5
CVE-2019-10485

Infinite loop while decoding compressed data can lead to overrun condition in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdrago…

Mitigation only
Fix from $1,950 2019-12-12
Apq8098 Firmware MEDIUM 5.5
CVE-2019-10484

Use after free issue occurs when command destructors access dynamically allocated response buffer which is already deallocated during previous comman…

Mitigation only
Fix from $1,600 2019-12-12
Apq8009 Firmware CRITICAL 9.8
CVE-2019-2303

SNDCP module may access array out side its boundary when it receives malformed XID message. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum…

Mitigation only
Fix from $2,300 2019-11-21
Apq8009 Firmware HIGH 7.8
CVE-2019-2315

While invoking the API to copy from fd or local buffer to the secure buffer, Parameters being populated are from non secure environment. in Snapdrago…

Mitigation only
Fix from $1,950 2019-11-21
Mdm9205 Firmware HIGH 7.8
CVE-2019-2329

Use after free issue in cleanup routine due to missing pointer sanitization for a failed start of a trusted application. in Snapdragon Compute, Snapd…

Mitigation only
Fix from $1,950 2019-11-21
Mdm9205 Firmware HIGH 7.8
CVE-2019-2339

Out of bound access due to lack of check of whiltelist array size while reading the image elf segments. in Snapdragon Auto, Snapdragon Compute, Snapd…

Mitigation only
Fix from $1,950 2019-11-21
Apq8009 Firmware HIGH 7.5
CVE-2019-2335

While processing Attach Reject message, Valid exit condition is not met resulting into an infinite loop in Snapdragon Auto, Snapdragon Compute, Snapd…

No fix yet
Fix from $1,950 2019-11-21
Apq8017 Firmware MEDIUM 5.5
CVE-2019-2318

Non Secure Kernel can cause Trustzone to do an arbitrary memory read which will result into DOS in Snapdragon Auto, Snapdragon Connectivity, Snapdrag…

Mitigation only
Fix from $1,600 2019-11-21
Mdm9205 Firmware MEDIUM 5.5
CVE-2019-2336

Subsequent use of the CBO listener may result in further memory corruption due to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapd…

Mitigation only
Fix from $1,600 2019-11-21
Apq8009 Firmware CRITICAL 9.8
CVE-2019-2271

Buffer over read can happen while parsing downlink session management OTA messages if network sends un-intended values in Snapdragon Auto, Snapdragon…

Mitigation only
Fix from $2,300 2019-11-21
Apq8009 Firmware CRITICAL 9.8
CVE-2019-2289

Lack of integrity check allows MODEM to accept any NAS messages which can result into authentication bypass of NAS in Snapdragon Auto, Snapdragon Com…

Mitigation only
Fix from $2,300 2019-11-21
Apq8016 Firmware HIGH 7.8
CVE-2019-2251

If a bitmap file is loaded from any un-authenticated source, there is a possibility that the bitmap can potentially cause stack buffer overflow. in S…

Mitigation only
Fix from $1,950 2019-11-21
Apq8009 Firmware MEDIUM 5.5
CVE-2019-2295

Information disclosure due to lack of address range check done on the SysDBG buffers in SDI code. in Snapdragon Auto, Snapdragon Compute, Snapdragon …

Mitigation only
Fix from $1,600 2019-11-21
Qca6174 Firmware HIGH 7.8
CVE-2019-10617

Low privilege users can access service configuration which contains registry data that admins uses to create or delete entries in the registry in QCA…

Mitigation only
Fix from $1,950 2019-11-21
Apq8009 Firmware HIGH 7.8
CVE-2018-13916

Out-of-bounds memory access in Qurt kernel function when using the identifier to access Qurt kernel buffer to retrieve thread data. in Snapdragon Aut…

Mitigation only
Fix from $1,950 2019-11-21
Apq8009 Firmware MEDIUM 5.5
CVE-2019-10490

Use after free issue in Xtra daemon shutdown due to static object instance getting freed from a multiple places in Snapdragon Auto, Snapdragon Comput…

Mitigation only
Fix from $1,600 2019-11-21
Ipq8074 Firmware CRITICAL 9.8
CVE-2019-2249

Kernel can do a memory read from arbitrary address passed by user during execution of a syscall in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

Mitigation only
Fix from $2,300 2019-11-06
Mdm9150 Firmware CRITICAL 9.8
CVE-2019-2258

Improper validation of array index causes OOB write and then leads to memory corruption in MMCP in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

Mitigation only
Fix from $2,300 2019-11-06
Msm8909w Firmware CRITICAL 9.8
CVE-2019-2285

Out of bound write issue is observed while giving information about properties that have been set so far for playing video in Snapdragon Auto, Snapdr…

Mitigation only
Fix from $2,300 2019-11-06
Apq8017 Firmware CRITICAL 9.8
CVE-2019-2302

While processing vendor command which contains corrupted channel count, an integer overflow occurs and finally will lead to heap overflow. in Snapdra…

Mitigation only
Fix from $2,300 2019-11-06