| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Information disclosure in Network Services due to buffer over-read while the device receives DNS response. |
| Memory corruption in Bluetooth HOST while processing the AVRC_PDU_GET_PLAYER_APP_VALUE_TEXT AVRCP response. |
| Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. |
| Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message. |
| Transient DOS due to improper authorization in Modem |
| Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms. |
| Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon. |
| Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder. |
| Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network. |
| Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming. |
| Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command length. |
| Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update message. |
| Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card. |
| Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message. |
| Memory corruption in User Identity Module due to integer overflow to buffer overflow when a segement is received via qmi http. |
| Memory corruption due to improper access control in Qualcomm IPC. |
| Memory corruption due to configuration weakness in modem wile sending command to write protected files. |
| Memory corruption due to double free in core while initializing the encryption key. |
| Memory corruption in modem due to buffer overflow while processing a PPP packet |
| Information disclosure in Bluetooth driver due to buffer over-read while reading l2cap length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables |