Vulnerability index

Browse CVEs

2,480 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ar7420 Firmware HIGH 8.8
CVE-2020-11257

Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastructure and Networking

Mitigation only
Fix from $1,950 2021-06-09
Ar7420 Firmware HIGH 8.8
CVE-2020-11258

Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking

Mitigation only
Fix from $1,950 2021-06-09
Ar7420 Firmware HIGH 8.8
CVE-2020-11259

Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastructure and Networking

No fix yet
Fix from $1,950 2021-06-09
Apq8017 Firmware HIGH 8.4
CVE-2020-11260

An improper free of uninitialized memory can occur in DIAG services in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile

Mitigation only
Fix from $1,950 2021-06-09
Aqt1000 Firmware HIGH 7.8
CVE-2020-11165

Memory corruption due to buffer overflow while copying the message provided by HLOS into buffer without validating the length of buffer in Snapdragon…

Mitigation only
Fix from $1,950 2021-06-09
Aqt1000 Firmware HIGH 7.8
CVE-2020-11178

Trusted APPS to overwrite the CPZ memory of another use-case as TZ only checks the physical address not overlapping with its memory and its RoT memor…

Mitigation only
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.8
CVE-2020-11235

Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto, Snapdragon Compute, Snapdra…

Mitigation only
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.8
CVE-2020-11239

Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned up properly in Snapdragon Au…

Patch available
Fix from $1,950 2021-06-09
Apq8009w Firmware HIGH 7.8
CVE-2020-11240

Memory corruption due to ioctl command size was incorrectly set to the size of a pointer and not enough storage is allocated for the copy of the user…

Patch available
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.8
CVE-2020-11261 KEV

Memory corruption due to improper check to return error when user application requests memory allocation of a huge size in Snapdragon Auto, Snapdrago…

Patch available
Fix from $1,950 2021-06-09
Aqt1000 Firmware HIGH 7.5
CVE-2020-11238

Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect…

Mitigation only
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.5
CVE-2020-11241

Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attribute in Snapdragon Auto, Snap…

Mitigation only
Fix from $1,950 2021-06-09
Apq8053 Firmware HIGH 7.1
CVE-2020-11161

Out-of-bounds memory access can occur while calculating alignment requirements for a negative width from external components in Snapdragon Auto, Snap…

Patch available
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.0
CVE-2020-11233

Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again from mmc without validation in…

Patch available
Fix from $1,950 2021-06-09
Apq8009w Firmware HIGH 7.0
CVE-2020-11250

Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Sna…

Patch available
Fix from $1,950 2021-06-09
Apq8009 Firmware HIGH 7.0
CVE-2020-11262

A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in S…

Patch available
Fix from $1,950 2021-06-09
Apq8096au Firmware MEDIUM 6.7
CVE-2020-11160

Resource leakage issue during dci client registration due to reference count is not decremented if dci client registration fails in Snapdragon Auto, …

Patch available
Fix from $1,600 2021-06-09
Ar7420 Firmware MEDIUM 6.5
CVE-2020-11266

Image address is dereferenced before validating its range which can cause potential QSEE information leakage in Snapdragon Wired Infrastructure and N…

Mitigation only
Fix from $1,600 2021-06-09
Ar7420 Firmware MEDIUM 5.5
CVE-2020-11265

Information disclosure issue due to lack of validation of pointer arguments passed to TZ BSP in Snapdragon Wired Infrastructure and Networking

Mitigation only
Fix from $1,600 2021-06-09
Apq8096au Firmware CRITICAL 9.1
CVE-2020-11126

Possible out of bound read while WLAN frame parsing due to lack of check for body and header length in Snapdragon Auto, Snapdragon Compute, Snapdrago…

Mitigation only
Fix from $2,300 2021-06-09
Apq8009 Firmware CRITICAL 9.8
CVE-2021-1910

Double free in video due to lack of input buffer length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IO…

Mitigation only
Fix from $2,300 2021-05-07
Apq8009 Firmware HIGH 7.8
CVE-2020-11289

Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect…

Mitigation only
Fix from $1,950 2021-05-07
Ar8035 Firmware HIGH 7.8
CVE-2020-11294

Out of bound write in logger due to prefix size is not validated while prepended to logging string in Snapdragon Auto, Snapdragon Compute, Snapdragon…

Mitigation only
Fix from $1,950 2021-05-07
Fsm10055 Firmware HIGH 7.8
CVE-2020-11295

Use after free in camera If the threadmanager is being cleaned up while the worker thread is processing objects in Snapdragon Auto, Snapdragon Comput…

Mitigation only
Fix from $1,950 2021-05-07
Apq8009w Firmware HIGH 7.8
CVE-2021-1891

A possible use-after-free occurrence in audio driver can happen when pointers are not properly handled in Snapdragon Auto, Snapdragon Compute, Snapdr…

Patch available
Fix from $1,950 2021-05-07
Apq8009w Firmware HIGH 7.8
CVE-2021-1895

Possible integer overflow due to improper length check while flashing an image in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voic…

Patch available
Fix from $1,950 2021-05-07
Apq8009 Firmware HIGH 7.8
CVE-2021-1905 KEV

Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon Auto, Snapdragon Compute, Snap…

Patch available
Fix from $1,950 2021-05-07
Apq8096au Firmware HIGH 7.8
CVE-2021-1915

Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect…

Mitigation only
Fix from $1,950 2021-05-07
Apq8009 Firmware HIGH 7.8
CVE-2021-1927

Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snapdragon Compute, Snapdragon Co…

Patch available
Fix from $1,950 2021-05-07
Aqt1000 Firmware HIGH 7.5
CVE-2021-1925

Possible denial of service scenario due to improper handling of group management action frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Conn…

Mitigation only
Fix from $1,950 2021-05-07