Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Qca6391 Firmware
Total 635 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-33225 1 Qualcomm 58 Apq8096au, Apq8096au Firmware, Mdm9628 and 55 more 2024-04-12 N/A 7.8 HIGH
Memory corruption due to use after free in trusted application environment.
CVE-2022-33220 1 Qualcomm 90 Aqt1000, Aqt1000 Firmware, Qam8295p and 87 more 2024-04-12 N/A 5.5 MEDIUM
Information disclosure in Automotive multimedia due to buffer over-read.
CVE-2022-33213 1 Qualcomm 418 Apq8009, Apq8009 Firmware, Apq8009w and 415 more 2024-04-12 N/A 8.8 HIGH
Memory corruption in modem due to buffer overflow while processing a PPP packet
CVE-2022-25713 1 Qualcomm 110 Ar8035, Ar8035 Firmware, Qam8295p and 107 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exporting a shared key.
CVE-2022-25709 1 Qualcomm 136 Ar8035, Ar8035 Firmware, Qca6174a and 133 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in modem due to use of out of range pointer offset while processing qmi msg
CVE-2022-25705 1 Qualcomm 402 Apq8009, Apq8009 Firmware, Apq8009w and 399 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response
CVE-2022-25694 1 Qualcomm 416 Apq8009, Apq8009 Firmware, Apq8009w and 413 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in Modem due to usage of Out-of-range pointer offset in UIM
CVE-2022-25655 1 Qualcomm 476 Apq8009, Apq8009 Firmware, Apq8017 and 473 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.
CVE-2022-22076 1 Qualcomm 696 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8953pro and 693 more 2024-04-12 N/A 5.5 MEDIUM
information disclosure due to cryptographic issue in Core during RPMB read request.
CVE-2022-22075 1 Qualcomm 366 Apq8009, Apq8009 Firmware, Apq8009w and 363 more 2024-04-12 N/A 5.5 MEDIUM
Information Disclosure in Graphics during GPU context switch.
CVE-2022-22060 1 Qualcomm 148 315 5g Iot Modem, 315 5g Iot Modem Firmware, Ar8035 and 145 more 2024-04-12 N/A 7.5 HIGH
Assertion occurs while processing Reconfiguration message due to improper validation
CVE-2023-43536 1 Qualcomm 618 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 615 more 2024-04-12 N/A 7.5 HIGH
Transient DOS while parse fils IE with length equal to 1.
CVE-2023-43534 1 Qualcomm 132 Ar8035, Ar8035 Firmware, Fastconnect 6900 and 129 more 2024-04-12 N/A 9.8 CRITICAL
Memory corruption while validating the TID to Link Mapping action request frame, when a station connects to an access point.
CVE-2023-43533 1 Qualcomm 476 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 473 more 2024-04-12 N/A 7.5 HIGH
Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.
CVE-2023-43523 1 Qualcomm 284 Ar8035, Ar8035 Firmware, Csr8811 and 281 more 2024-04-12 N/A 7.5 HIGH
Transient DOS while processing 11AZ RTT management action frame received through OTA.
CVE-2023-43522 1 Qualcomm 572 Aqt1000, Aqt1000 Firmware, Ar8035 and 569 more 2024-04-12 N/A 7.5 HIGH
Transient DOS while key unwrapping process, when the given encrypted key is empty or NULL.
CVE-2023-43520 1 Qualcomm 140 Ar8035, Ar8035 Firmware, Fastconnect 6900 and 137 more 2024-04-12 N/A 9.8 CRITICAL
Memory corruption when AP includes TID to link mapping IE in the beacons and STA is parsing the beacon TID to link mapping IE.
CVE-2023-43519 1 Qualcomm 268 Aqt1000, Aqt1000 Firmware, Fastconnect 6200 and 265 more 2024-04-12 N/A 9.8 CRITICAL
Memory corruption in video while parsing the Videoinfo, when the size of atom is greater than the videoinfo size.
CVE-2023-43518 1 Qualcomm 306 Aqt1000, Aqt1000 Firmware, Fastconnect 6200 and 303 more 2024-04-12 N/A 9.8 CRITICAL
Memory corruption in video while parsing invalid mp2 clip.
CVE-2023-43513 1 Qualcomm 534 315 5g Iot Modem, 315 5g Iot Modem Firmware, Apq8017 and 531 more 2024-04-12 N/A 7.8 HIGH
Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.