Vulnerability index

Browse CVEs

2,480 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Mdm9206 Firmware HIGH 7.8
CVE-2018-11819

Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, …

Patch available
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2018-11929

Lack of input validation in WLAN function can lead to potential heap overflow in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT,…

Patch available
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2018-11934

Possible out of bounds write due to improper input validation while processing DO_ACS vendor command in Snapdragon Auto, Snapdragon Consumer Electron…

Patch available
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.8
CVE-2018-11939

Use after issue in WLAN function due to multiple ACS scan requests at a time in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, …

Patch available
Fix from $1,950 2019-06-14
Ipq8074 Firmware HIGH 7.8
CVE-2018-13908

Truncated access authentication token leads to weakened access control for stored secure application data in Snapdragon Auto, Snapdragon Compute, Sna…

Mitigation only
Fix from $1,950 2019-06-14
Ipq8074 Firmware HIGH 7.8
CVE-2018-13910

Out-of-Bounds access in TZ due to invalid index calculated to check against DDR in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer Elec…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9150 Firmware HIGH 7.5
CVE-2018-13902

Out of bounds memory read and access due to improper array index validation may lead to unexpected behavior while decoding XTRA file in Snapdragon Au…

Mitigation only
Fix from $1,950 2019-06-14
Mdm9206 Firmware HIGH 7.0
CVE-2018-13909

Metadata verification and partial hash system calls by bootloader may corrupt parallel hashing state in progress resulting in unexpected behavior in …

Mitigation only
Fix from $1,950 2019-06-14
Ipq4019 Firmware MEDIUM 5.5
CVE-2017-8252

Kernel can inject faults in computations during the execution of TrustZone leading to information disclosure in Snapdragon Auto, Snapdragon Compute, …

Mitigation only
Fix from $1,600 2019-06-14
Ipq4019 Firmware MEDIUM 5.5
CVE-2018-11942

Failure to initialize the reserved memory which is sent to the firmware might lead to exposure of 1 byte of uninitialized kernel SKB memory to FW in …

Patch available
Fix from $1,600 2019-06-14
Ipq8064 Firmware MEDIUM 5.5
CVE-2018-11947

The txrx stats req might be double freed in the pdev detach when the host driver is unloading in Snapdragon Auto, Snapdragon Consumer Electronics Con…

Patch available
Fix from $1,600 2019-06-14
Mdm9206 Firmware MEDIUM 5.5
CVE-2018-13901

Due to missing permissions in Android Manifest file, Sensitive information disclosure issue can happen in PCI RCS app in Snapdragon Auto, Snapdragon …

Mitigation only
Fix from $1,600 2019-06-14
Pq4019 Firmware MEDIUM 5.3
CVE-2018-13907

While deserializing any key blob during key operations, buffer overflow could occur, exposing partial key information if any key operations are invok…

Mitigation only
Fix from $1,600 2019-06-14
Mdm9206 Firmware CRITICAL 9.8
CVE-2018-13925

Error in parsing PMT table frees the memory allocated for the map section but does not reset the context map section reference causing heap use after…

Mitigation only
Fix from $2,300 2019-05-24
Mdm9206 Firmware CRITICAL 9.8
CVE-2019-2244

Possible integer underflow can happen when calculating length of elementary stream info from invalid section length which is later used to read from …

Mitigation only
Fix from $2,300 2019-05-24
Mdm9206 Firmware CRITICAL 9.8
CVE-2019-2245

Possible integer underflow can happen when calculating length of elementary stream map from invalid packet length which is later used to read from in…

Patch available
Fix from $2,300 2019-05-24
Mdm9206 Firmware HIGH 7.8
CVE-2018-13920

Use-after-free condition due to Improper handling of hrtimers when the PMU driver tries to access its events in Snapdragon Auto, Snapdragon Consumer …

Mitigation only
Fix from $1,950 2019-05-24
Mdm9150 Firmware HIGH 7.8
CVE-2019-2247

Possibility of double free issue while running multiple instances of smp2p test because of proper protection is missing while using global variable i…

Patch available
Fix from $1,950 2019-05-24
Mdm9150 Firmware HIGH 7.8
CVE-2019-2248

Buffer overflow can occur if invalid header tries to overwrite the existing buffer which fix size allocation in Snapdragon Auto, Snapdragon Compute, …

Patch available
Fix from $1,950 2019-05-24
Qcs605 Firmware HIGH 7.8
CVE-2019-2250

Kernel can write to arbitrary memory address passed by user while freeing/stopping a thread in Snapdragon Compute, Snapdragon Consumer IOT, Snapdrago…

Mitigation only
Fix from $1,950 2019-05-24
Mdm9206 Firmware CRITICAL 9.8
CVE-2018-11271

Improper authentication can happen on Remote command handling due to inappropriate handling of events in Snapdragon Auto, Snapdragon Compute, Snapdra…

Mitigation only
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-11930

Improper input validation on input data which is used to locate and copy the additional IEs in WLAN function can lead to potential integer truncation…

Patch available
Fix from $2,300 2019-05-24
Mdm9206 Firmware CRITICAL 9.8
CVE-2018-11936

Index of array is processed in a wrong way inside a while loop and result in invalid index (-1 or something else) leads to out of bound memory access…

Mitigation only
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-11937

Lack of input validation before copying can lead to a buffer over read in WLAN function in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer I…

Patch available
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-11940

Lack of check in length before using memcpy in WLAN function can lead to OOB access in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, …

Patch available
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-11949

Failure to initialize the extra buffer can lead to an out of buffer access in WLAN function in Snapdragon Auto, Snapdragon Compute, Snapdragon Consum…

Patch available
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-11953

While processing ssid IE length from remote AP, possible out-of-bounds access may occur due to crafted ssid IE length in Snapdragon Auto, Snapdragon …

Patch available
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-13886

Unchecked OTA field in GNSS XTRA3 lead to integer overflow and then buffer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Elect…

Mitigation only
Fix from $2,300 2019-05-24
Mdm9150 Firmware CRITICAL 9.8
CVE-2018-13887

Untrusted header fields in GNSS XTRA3 function can lead to integer overflow in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdrag…

Mitigation only
Fix from $2,300 2019-05-24
Mdm9150 Firmware HIGH 7.8
CVE-2018-11923

Improper buffer length check before copying can lead to integer overflow and then a buffer overflow in WMA event handler in Snapdragon Auto, Snapdrag…

Mitigation only
Fix from $1,950 2019-05-24