2024-12-02
|
CVE-2024-33053
|
Memory corruption when multiple threads try to unregister the CVP buffer at the same time.
|
C\-V2x_9150_firmware, Fastconnect_6200_firmware, Fastconnect_6800_firmware, Fastconnect_6900_firmware, Qam8295p_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6574au_firmware, Qca6696_firmware, Qca8337_firmware, Qcn9074_firmware, Qcs410_firmware, Qcs610_firmware, Qsm8250_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8295p_firmware, Sa8530p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd865_5g_firmware, Sdx55_firmware, Sm7250p_firmware, Snapdragon_690_5g_mobile_platform_firmware, Snapdragon_750g_5g_mobile_platform_firmware, Snapdragon_765_5g_mobile_platform_firmware, Snapdragon_765g_5g_mobile_platform_firmware, Snapdragon_768g_5g_mobile_platform_firmware, Snapdragon_865\+_5g_mobile_platform_firmware, Snapdragon_865_5g_mobile_platform_firmware, Snapdragon_870_5g_mobile_platform_firmware, Snapdragon_x55_5g_modem\-Rf_system_firmware, Snapdragon_xr2_5g_platform_firmware, Sxr2130_firmware, Video_collaboration_vc1_platform_firmware, Video_collaboration_vc3_platform_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9375_firmware, Wcd9380_firmware, Wcd9385_firmware, Wcn3660b_firmware, Wcn3680b_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
N/A
|
|
|
2024-12-02
|
CVE-2024-33037
|
Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
|
C\-V2x_9150_firmware, Fastconnect_6800_firmware, Fastconnect_6900_firmware, Qam8295p_firmware, Qca6174a_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6574au_firmware, Qca6696_firmware, Qca8337_firmware, Qcn9074_firmware, Qcs410_firmware, Qcs610_firmware, Qsm8250_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8295p_firmware, Sa8530p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd865_5g_firmware, Sdx55_firmware, Snapdragon_865\+_5g_mobile_platform_firmware, Snapdragon_865_5g_mobile_platform_firmware, Snapdragon_870_5g_mobile_platform_firmware, Snapdragon_w5\+_gen_1_wearable_platform_firmware, Snapdragon_x55_5g_modem\-Rf_system_firmware, Snapdragon_xr2_5g_platform_firmware, Sw5100_firmware, Sw5100p_firmware, Sxr2130_firmware, Video_collaboration_vc1_platform_firmware, Video_collaboration_vc3_platform_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9380_firmware, Wcn3660b_firmware, Wcn3680b_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
N/A
|
|
|
2024-12-02
|
CVE-2024-33036
|
Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.
|
C\-V2x_9150_firmware, Fastconnect_6800_firmware, Fastconnect_6900_firmware, Fastconnect_7800_firmware, Qam8295p_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6574au_firmware, Qca6696_firmware, Qca8337_firmware, Qcn9074_firmware, Qcs410_firmware, Qcs610_firmware, Qsm8250_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8295p_firmware, Sa8530p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd865_5g_firmware, Sdx55_firmware, Snapdragon_865\+_5g_mobile_platform_firmware, Snapdragon_865_5g_mobile_platform_firmware, Snapdragon_870_5g_mobile_platform_firmware, Snapdragon_8_gen_1_mobile_platform_firmware, Snapdragon_w5\+_gen_1_wearable_platform_firmware, Snapdragon_x55_5g_modem\-Rf_system_firmware, Snapdragon_xr2_5g_platform_firmware, Sw5100_firmware, Sw5100p_firmware, Sxr2130_firmware, Video_collaboration_vc1_platform_firmware, Video_collaboration_vc3_platform_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9380_firmware, Wcn3660b_firmware, Wcn3680b_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
N/A
|
|
|
2020-09-09
|
CVE-2020-3656
|
Out of bound access can happen in MHI command process due to lack of check of command channel id value received from MHI devices in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, Kamorta, MDM9607, MSM8917, MSM8953, Nicobar, QCM2150, QCS405, QCS605, QM215, Rennell, SA6155P, SA8155P, Saipan, SC8180X, SDM429, SDM429W, SDM439, SDM450, SDM632, SDM710, SDM845, SDX55, SM6150,...
|
Apq8009_firmware, Kamorta_firmware, Mdm9607_firmware, Msm8917_firmware, Msm8953_firmware, Nicobar_firmware, Qcm2150_firmware, Qcs405_firmware, Qcs605_firmware, Qm215_firmware, Rennell_firmware, Sa6155p_firmware, Sa8155p_firmware, Saipan_firmware, Sc8180x_firmware, Sdm429_firmware, Sdm429w_firmware, Sdm439_firmware, Sdm450_firmware, Sdm632_firmware, Sdm710_firmware, Sdm845_firmware, Sdx55_firmware, Sm6150_firmware, Sm7150_firmware, Sm8150_firmware, Sm8250_firmware, Sxr2130_firmware
|
7.8
|
|
|
2020-09-09
|
CVE-2020-3679
|
u'During execution after Address Space Layout Randomization is turned on for QTEE, part of code is still mapped at known address including code segments' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in Bitra, Kamorta, Nicobar, QCS404, QCS610, Rennell, SA6155P, SA8155P, Saipan, SC7180, SC8180X, SDX55, SM6150, SM7150, SM8150, SM8250, SXR2130
|
Bitra_firmware, Kamorta_firmware, Nicobar_firmware, Qcs404_firmware, Qcs610_firmware, Rennell_firmware, Sa6155p_firmware, Sa8155p_firmware, Saipan_firmware, Sc7180_firmware, Sc8180x_firmware, Sdx55_firmware, Sm6150_firmware, Sm7150_firmware, Sm8150_firmware, Sm8250_firmware, Sxr2130_firmware
|
5.5
|
|
|
2020-11-02
|
CVE-2020-3654
|
u'Buffer overflow occurs while processing SIP message packet due to lack of check of index validation before copying into it' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti, APQ8053, APQ8096AU, APQ8098, Bitra, Kamorta, MSM8905, MSM8909W, MSM8917, MSM8940, MSM8953, MSM8996AU, MSM8998, Nicobar, QCA6390, QCA6574AU, QCM2150, QCS605, QM215, Rennell, SA6155P, SA8155P, Saipan,...
|
Agatti_firmware, Apq8053_firmware, Apq8096au_firmware, Apq8098_firmware, Bitra_firmware, Kamorta_firmware, Msm8905_firmware, Msm8909w_firmware, Msm8917_firmware, Msm8940_firmware, Msm8953_firmware, Msm8996au_firmware, Msm8998_firmware, Nicobar_firmware, Qca6390_firmware, Qca6574au_firmware, Qcm2150_firmware, Qcs605_firmware, Qm215_firmware, Rennell_firmware, Sa6155p_firmware, Sa8155p_firmware, Saipan_firmware, Sda660_firmware, Sdm429_firmware, Sdm429w_firmware, Sdm439_firmware, Sdm450_firmware, Sdm630_firmware, Sdm632_firmware, Sdm636_firmware, Sdm660_firmware, Sdm670_firmware, Sdm710_firmware, Sdm845_firmware, Sm6150_firmware, Sm7150_firmware, Sm8150_firmware, Sm8250_firmware, Sxr1130_firmware, Sxr2130_firmware
|
9.8
|
|
|
2020-11-02
|
CVE-2020-3673
|
u'Buffer overflow can happen as part of SIP message packet processing while storing values in array due to lack of check to validate the index length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti, APQ8053, APQ8096AU, APQ8098, Bitra, Kamorta, MSM8905, MSM8909W, MSM8917, MSM8940, MSM8953, MSM8996AU, Nicobar, QCA6390, QCA6574AU, QCM2150, QCS605, QM215, Rennell, SA6155P,...
|
Agatti_firmware, Apq8053_firmware, Apq8096au_firmware, Apq8098_firmware, Bitra_firmware, Kamorta_firmware, Msm8905_firmware, Msm8909w_firmware, Msm8917_firmware, Msm8940_firmware, Msm8953_firmware, Msm8996au_firmware, Nicobar_firmware, Qca6390_firmware, Qca6574au_firmware, Qcm2150_firmware, Qcs605_firmware, Qm215_firmware, Rennell_firmware, Sa6155p_firmware, Sa8155p_firmware, Saipan_firmware, Sda660_firmware, Sdm429_firmware, Sdm429w_firmware, Sdm439_firmware, Sdm450_firmware, Sdm630_firmware, Sdm632_firmware, Sdm636_firmware, Sdm660_firmware, Sdm670_firmware, Sdm710_firmware, Sdm845_firmware, Sm6150_firmware, Sm7150_firmware, Sm8150_firmware, Sm8250_firmware, Sxr1130_firmware, Sxr2130_firmware
|
9.8
|
|
|
2020-11-02
|
CVE-2020-3684
|
u'QSEE reads the access permission policy for the SMEM TOC partition from the SMEM TOC contents populated by XBL Loader and applies them without validation' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in Agatti, APQ8009, APQ8098, Bitra, IPQ6018, Kamorta, MDM9150, MDM9205, MDM9206, MDM9607, MDM9650, MSM8905, MSM8998, Nicobar,...
|
Agatti_firmware, Apq8009_firmware, Apq8098_firmware, Bitra_firmware, Ipq6018_firmware, Kamorta_firmware, Mdm9150_firmware, Mdm9205_firmware, Mdm9206_firmware, Mdm9607_firmware, Mdm9650_firmware, Msm8905_firmware, Msm8998_firmware, Nicobar_firmware, Qca6390_firmware, Qcs404_firmware, Qcs405_firmware, Qcs605_firmware, Qcs610_firmware, Rennell_firmware, Sa415m_firmware, Sa515m_firmware, Sa6155p_firmware, Sa8155p_firmware, Saipan_firmware, Sc7180_firmware, Sc8180x_firmware, Sda660_firmware, Sda845_firmware, Sdm630_firmware, Sdm636_firmware, Sdm660_firmware, Sdm670_firmware, Sdm710_firmware, Sdm845_firmware, Sdm850_firmware, Sdx20_firmware, Sdx24_firmware, Sdx55_firmware, Sm6150_firmware, Sm7150_firmware, Sm8150_firmware, Sm8250_firmware, Sxr1130_firmware, Sxr2130_firmware
|
7.8
|
|
|
2020-11-02
|
CVE-2020-3690
|
u'Due to an incorrect SMMU configuration, the modem crypto engine can potentially compromise the hypervisor' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in Agatti, Bitra, Kamorta, Nicobar, QCA6390, QCS404, QCS605, QCS610, Rennell, SA415M, SA515M, SA6155P, SA8155P, Saipan, SC7180, SC8180X, SDA845, SDM670, SDM710, SDM845, SDM850,...
|
Agatti_firmware, Bitra_firmware, Kamorta_firmware, Nicobar_firmware, Qca6390_firmware, Qcs404_firmware, Qcs605_firmware, Qcs610_firmware, Rennell_firmware, Sa415m_firmware, Sa515m_firmware, Sa6155p_firmware, Sa8155p_firmware, Saipan_firmware, Sc7180_firmware, Sc8180x_firmware, Sda845_firmware, Sdm670_firmware, Sdm710_firmware, Sdm845_firmware, Sdm850_firmware, Sdx24_firmware, Sdx55_firmware, Sm6150_firmware, Sm7150_firmware, Sm8150_firmware, Sm8250_firmware, Sxr1130_firmware, Sxr2130_firmware
|
7.8
|
|
|
2020-11-12
|
CVE-2020-3639
|
u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cycle or memory overflow' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in APQ8009, APQ8017, APQ8037, APQ8053, MDM9250, MDM9607, MDM9628, MDM9640, MDM9650, MSM8108, MSM8208, MSM8209, MSM8608, MSM8905, MSM8909, MSM8917, MSM8920, MSM8937, MSM8940, MSM8953, MSM8996AU, QCM4290, QCM6125, QCS410,...
|
Apq8009_firmware, Apq8017_firmware, Apq8037_firmware, Apq8053_firmware, Mdm9250_firmware, Mdm9607_firmware, Mdm9628_firmware, Mdm9640_firmware, Mdm9650_firmware, Msm8108_firmware, Msm8208_firmware, Msm8209_firmware, Msm8608_firmware, Msm8905_firmware, Msm8909_firmware, Msm8917_firmware, Msm8920_firmware, Msm8937_firmware, Msm8940_firmware, Msm8953_firmware, Msm8996au_firmware, Qcm4290_firmware, Qcm6125_firmware, Qcs410_firmware, Qcs4290_firmware, Qcs603_firmware, Qcs605_firmware, Qcs610_firmware, Qcs6125_firmware, Qm215_firmware, Qsm8350_firmware, Sa415m_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8150p_firmware, Sa8155_firmware, Sa8155p_firmware, Sa8195p_firmware, Sc7180_firmware, Sc8180x_firmware, Sc8180xp_firmware, Sda429w_firmware, Sda640_firmware, Sda660_firmware, Sda670_firmware, Sda845_firmware, Sda855_firmware, Sdm1000_firmware, Sdm429_firmware, Sdm429w_firmware, Sdm439_firmware, Sdm450_firmware, Sdm455_firmware, Sdm630_firmware, Sdm632_firmware, Sdm636_firmware, Sdm640_firmware, Sdm660_firmware, Sdm670_firmware, Sdm710_firmware, Sdm712_firmware, Sdm845_firmware, Sdm850_firmware, Sdx24_firmware, Sdx50m_firmware, Sdx55_firmware, Sdx55m_firmware, Sm4125_firmware, Sm4250_firmware, Sm4250p_firmware, Sm6115_firmware, Sm6115p_firmware, Sm6125_firmware, Sm6150_firmware, Sm6150p_firmware, Sm6250_firmware, Sm6250p_firmware, Sm7125_firmware, Sm7150_firmware, Sm7150p_firmware, Sm7250_firmware, Sm7250p_firmware, Sm8150_firmware, Sm8150p_firmware, Sm8350_firmware, Sm8350p_firmware, Sxr1120_firmware, Sxr1130_firmware
|
9.8
|
|
|