Vulnerability index

Browse CVEs

2,480 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wsa8835 Firmware MEDIUM 6.7
CVE-2024-23374

Memory corruption is possible when an attempt is made from userspace or console to write some haptics effects pattern to the haptics debugfs file.

Mitigation only
Fix from $1,600 2024-10-07
Wsa8835 Firmware MEDIUM 6.7
CVE-2024-23375

Memory corruption during the network scan request.

No fix yet
Fix from $1,600 2024-10-07
Wsa8835 Firmware MEDIUM 6.7
CVE-2024-23376

Memory corruption while sending the persist buffer command packet from the user-space to the kernel space through the IOCTL call.

No fix yet
Fix from $1,600 2024-10-07
Srv1m Firmware MEDIUM 6.7
CVE-2024-23378

Memory corruption while invoking IOCTL calls for MSM module from the user space during audio playback and record.

No fix yet
Fix from $1,600 2024-10-07
Video Collaboration Vc1 Platform Firmware HIGH 7.8
CVE-2024-21455

Memory corruption when a compat IOCTL call is followed by another IOCTL call from userspace to a driver.

Mitigation only
Fix from $1,950 2024-10-07
Snapdragon 888\+ 5g Mobile Platform \(sm8350 Ac\) Firmware HIGH 7.8
CVE-2024-23369

Memory corruption when invalid length is provided from HLOS for FRS/UDS request/response buffers.

Mitigation only
Fix from $1,950 2024-10-07
Wsa8835 Firmware MEDIUM 6.7
CVE-2024-23370

Memory corruption when a process invokes IOCTL calls from user-space to create a HAB virtual channel and another process invokes IOCTL calls to destr…

Mitigation only
Fix from $1,600 2024-10-07
Ar8035 Firmware HIGH 7.8
CVE-2024-38402

Memory corruption while processing IOCTL call for getting group info.

Patch available
Fix from $1,950 2024-09-02
Apq8017 Firmware HIGH 7.8
CVE-2024-33052

Memory corruption when user provides data for FM HCI command control operations.

Patch available
Fix from $1,950 2024-09-02
Fastconnect 6700 Firmware HIGH 7.8
CVE-2024-33054

Memory corruption during the handshake between the Primary Virtual Machine and Trusted Virtual Machine.

Patch available
Fix from $1,950 2024-09-02
315 5g Iot Firmware HIGH 7.8
CVE-2024-33060

Memory corruption when two threads try to map and unmap a single node simultaneously.

Patch available
Fix from $1,950 2024-09-02
Ar8035 Firmware HIGH 7.8
CVE-2024-38401

Memory corruption while processing concurrent IOCTL calls.

Patch available
Fix from $1,950 2024-09-02
Ar8035 Firmware HIGH 7.5
CVE-2024-33057

Transient DOS while parsing the multi-link element Control field when common information length check is missing before updating the location.

Patch available
Fix from $1,950 2024-09-02
Fastconnect 6700 Firmware HIGH 7.8
CVE-2024-33047

Memory corruption when the captureRead QDCM command is invoked from user-space.

Mitigation only
Fix from $1,950 2024-09-02
Ar8035 Firmware HIGH 7.5
CVE-2024-33048

Transient DOS while parsing the received TID-to-link mapping element of beacon/probe response frame.

Patch available
Fix from $1,950 2024-09-02
Ar8035 Firmware HIGH 7.5
CVE-2024-33050

Transient DOS while parsing MBSSID during new IE generation in beacon/probe frame when IE length check is either missing or improper.

Patch available
Fix from $1,950 2024-09-02
315 5g Iot Firmware HIGH 7.5
CVE-2024-33051

Transient DOS while processing TIM IE from beacon frame as there is no check for IE length.

Mitigation only
Fix from $1,950 2024-09-02
Qam8255p Firmware HIGH 8.4
CVE-2024-33035

Memory corruption while calculating total metadata size when a very high reserved size is requested by gralloc clients.

No fix yet
Fix from $1,950 2024-09-02
Fastconnect 6700 Firmware HIGH 7.8
CVE-2024-33038

Memory corruption while passing untrusted/corrupted pointers from DSP to EVA.

Patch available
Fix from $1,950 2024-09-02
Apq8017 Firmware HIGH 7.8
CVE-2024-33042

Memory corruption when Alternative Frequency offset value is set to 255.

Patch available
Fix from $1,950 2024-09-02
Ar8035 Firmware HIGH 7.8
CVE-2024-33045

Memory corruption when BTFM client sends new messages over Slimbus to ADSP.

Patch available
Fix from $1,950 2024-09-02
Apq8017 Firmware MEDIUM 5.5
CVE-2024-33043

Transient DOS while handling PS event when Program Service name length offset value is set to 255.

Patch available
Fix from $1,600 2024-09-02
Qamsrv1m Firmware HIGH 8.4
CVE-2024-23365

Memory corruption while releasing shared resources in MinkSocket listener thread.

Mitigation only
Fix from $1,950 2024-09-02
Ar8035 Firmware HIGH 7.5
CVE-2024-23364

Transient DOS when processing the non-transmitted BSSID profile sub-elements present within the MBSSID Information Element (IE) of a beacon frame tha…

Mitigation only
Fix from $1,950 2024-09-02
9205 Lte Modem Firmware HIGH 7.1
CVE-2024-23362

Cryptographic issue while parsing RSA keys in COBR format.

Mitigation only
Fix from $1,950 2024-09-02
Qcn9000 Firmware MEDIUM 6.8
CVE-2024-33016

memory corruption when an invalid firehose patch command is invoked.

No fix yet
Fix from $1,600 2024-09-02
Qcn9024 Firmware HIGH 8.2
CVE-2024-23359

Information disclosure while decoding Tracking Area Update Accept or Attach Accept message received from network.

Mitigation only
Fix from $1,950 2024-09-02
Apq8017 Firmware HIGH 7.5
CVE-2024-23358

Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in Modem.

Mitigation only
Fix from $1,950 2024-09-02
315 5g Iot Modem Firmware HIGH 7.8
CVE-2024-33027

Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table.

Patch available
Fix from $1,950 2024-08-05
Ar8035 Firmware HIGH 7.8
CVE-2024-33028

Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released.

Patch available
Fix from $1,950 2024-08-05