Vulnerability index

Browse CVEs

2,480 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ipq4019 Firmware MEDIUM 5.5
CVE-2019-2240

While sending the rendered surface content to the screen, Error handling is not properly checked results in an unpredictable behaviour in Snapdragon …

No fix yet
Fix from $1,600 2019-07-25
Mdm9150 Firmware MEDIUM 5.5
CVE-2019-2241

While rendering the layout background, Error status check is not caught properly and also incorrect status handling is being done leading to unintend…

Mitigation only
Fix from $1,600 2019-07-25
Mdm9206 Firmware HIGH 7.8
CVE-2019-2235

Buffer overflow occurs when emulated RPMB is used due to sector size assumptions in the TA rollback protection logic. in Snapdragon Auto, Snapdragon …

Mitigation only
Fix from $1,950 2019-07-25
Mdm9206 Firmware HIGH 7.5
CVE-2018-13897

Clients hostname gets added to DNS record on device which is running dnsmasq resulting in an information exposure in Snapdragon Auto, Snapdragon Conn…

Patch available
Fix from $1,950 2019-07-25
Mdm9150 Firmware CRITICAL 9.8
CVE-2019-2279

Shared memory gets updated with invalid data and may lead to access beyond the allocated memory. in Snapdragon Auto, Snapdragon Connectivity, Snapdra…

Patch available
Fix from $2,300 2019-07-22
Mdm9150 Firmware CRITICAL 9.8
CVE-2019-2287

Improper validation for inputs received from firmware can lead to an out of bound write issue in video driver. in Snapdragon Auto, Snapdragon Compute…

Patch available
Fix from $2,300 2019-07-22
Mdm9150 Firmware HIGH 7.8
CVE-2019-2292

Out of bound access can occur due to buffer copy without checking size of input received from WLAN firmware in Snapdragon Auto, Snapdragon Consumer I…

Patch available
Fix from $1,950 2019-07-22
Ipq8074 Firmware CRITICAL 9.8
CVE-2018-13924

Lack of check to prevent the buffer length taking negative values can lead to stack overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Cons…

Mitigation only
Fix from $2,300 2019-07-22
Mdm9150 Firmware CRITICAL 9.8
CVE-2019-2269

Possible buffer overflow while processing the high level lim process action frame due to improper buffer length validation in Snapdragon Auto, Snapdr…

Patch available
Fix from $2,300 2019-07-22
Mdm9206 Firmware HIGH 7.8
CVE-2018-13896

XBL_SEC image authentication and other crypto related validations are accessible to a compromised OEM XBL Loader due to missing lock at XBL_SEC stage…

Mitigation only
Fix from $1,950 2019-07-22
Mdm9206 Firmware HIGH 7.8
CVE-2018-13927

Debug policy with invalid signature can be loaded when the debug policy functionality is disabled by using the parallel image loading in Snapdragon A…

Mitigation only
Fix from $1,950 2019-07-22
Mdm9607 Firmware HIGH 7.8
CVE-2019-2264

Null pointer dereference occurs for channel context while opening glink channel in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Mobile, Snapd…

Patch available
Fix from $1,950 2019-07-22
Msm8996au Firmware HIGH 7.8
CVE-2019-2277

Out of bound read can happen due to lack of NULL termination on user controlled data in WLAN in Snapdragon Auto, Snapdragon Compute, Snapdragon Consu…

Patch available
Fix from $1,950 2019-07-22
Mdm9150 Firmware HIGH 7.0
CVE-2019-2260

A race condition occurs while processing perf-event which can lead to a use after free condition in Snapdragon Auto, Snapdragon Compute, Snapdragon C…

Patch available
Fix from $1,950 2019-07-22
Mdm9206 Firmware MEDIUM 5.5
CVE-2019-2243

Possible buffer overflow at the end of iterating loop while getting the version info and lead to information disclosure. in Snapdragon Auto, Snapdrag…

Mitigation only
Fix from $1,600 2019-07-22
Ipq8074 Firmware MEDIUM 5.5
CVE-2019-2261

Unauthorized access from GPU subsystem to HLOS or other non secure subsystem memory can lead to information disclosure in Snapdragon Auto, Snapdragon…

Mitigation only
Fix from $1,600 2019-07-22
Msm8909w Firmware CRITICAL 9.8
CVE-2019-2255

An unprivileged user can craft a bitstream such that the payload encoded in the bitstream gains code execution in Snapdragon Auto, Snapdragon Compute…

Mitigation only
Fix from $2,300 2019-06-14
Mdm9650 Firmware CRITICAL 9.8
CVE-2019-2256

An unprivileged user can craft a bitstream such that the payload encoded in the bitstream gains code execution in Snapdragon Auto, Snapdragon Compute…

Mitigation only
Fix from $2,300 2019-06-14
Msm8909w Firmware CRITICAL 9.8
CVE-2019-2259

Resource allocation error while playing the video whose dimensions are more than supported dimension in Snapdragon Auto, Snapdragon Compute, Snapdrag…

Mitigation only
Fix from $2,300 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2019-2257

Wrong permissions in configuration file can lead to unauthorized permission in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Sna…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2018-13919

Use-after-free vulnerability will occur if reset of the routing table encounters an invalid rule id while processing command to reset in Snapdragon A…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9206 Firmware HIGH 7.8
CVE-2018-3583

A buffer overflow can occur while processing an extscan hotlist event in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Co…

Patch available
Fix from $1,950 2019-06-14
Mdm9206 Firmware HIGH 7.8
CVE-2018-5883

Buffer overflow in WLAN driver event handlers due to improper validation of array index in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Indus…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9206 Firmware HIGH 7.8
CVE-2018-5903

Out of bounds read occurs due to improper validation of array while processing VDEV stop response from WLAN firmware in Snapdragon Auto, Snapdragon C…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2018-5911

Buffer overflow in WLAN function due to improper check of buffer size before copying in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industri…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2018-5913

A non-time constant function memcmp is used which creates a side channel that could leak information in Snapdragon Auto, Snapdragon Compute, Snapdrag…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-11955

Lack of check on length of reason-code fetched from payload may lead driver access the memory not allocated to the frame and results in out of bound …

Patch available
Fix from $2,300 2019-06-14
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-13898

Out-of-Bounds write due to incorrect array index check in PMIC in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, …

Mitigation only
Fix from $2,300 2019-06-14
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-13911

Out of bounds memory read and access may lead to unexpected behavior in GNSS XTRA Parser in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer …

Mitigation only
Fix from $2,300 2019-06-14
Ipq4019 Firmware CRITICAL 9.1
CVE-2018-13906

The HMAC authenticating the message from QSEE is vulnerable to timing side channel analysis leading to potentially forged application message in Snap…

Mitigation only
Fix from $2,300 2019-06-14