2024-12-02
|
CVE-2024-33053
|
Memory corruption when multiple threads try to unregister the CVP buffer at the same time.
|
C\-V2x_9150_firmware, Fastconnect_6200_firmware, Fastconnect_6800_firmware, Fastconnect_6900_firmware, Qam8295p_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6574au_firmware, Qca6696_firmware, Qca8337_firmware, Qcn9074_firmware, Qcs410_firmware, Qcs610_firmware, Qsm8250_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8295p_firmware, Sa8530p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd865_5g_firmware, Sdx55_firmware, Sm7250p_firmware, Snapdragon_690_5g_mobile_platform_firmware, Snapdragon_750g_5g_mobile_platform_firmware, Snapdragon_765_5g_mobile_platform_firmware, Snapdragon_765g_5g_mobile_platform_firmware, Snapdragon_768g_5g_mobile_platform_firmware, Snapdragon_865\+_5g_mobile_platform_firmware, Snapdragon_865_5g_mobile_platform_firmware, Snapdragon_870_5g_mobile_platform_firmware, Snapdragon_x55_5g_modem\-Rf_system_firmware, Snapdragon_xr2_5g_platform_firmware, Sxr2130_firmware, Video_collaboration_vc1_platform_firmware, Video_collaboration_vc3_platform_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9375_firmware, Wcd9380_firmware, Wcd9385_firmware, Wcn3660b_firmware, Wcn3680b_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
N/A
|
|
|
2024-12-02
|
CVE-2024-33037
|
Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC message received from the firmware.
|
C\-V2x_9150_firmware, Fastconnect_6800_firmware, Fastconnect_6900_firmware, Qam8295p_firmware, Qca6174a_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6574au_firmware, Qca6696_firmware, Qca8337_firmware, Qcn9074_firmware, Qcs410_firmware, Qcs610_firmware, Qsm8250_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8295p_firmware, Sa8530p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd865_5g_firmware, Sdx55_firmware, Snapdragon_865\+_5g_mobile_platform_firmware, Snapdragon_865_5g_mobile_platform_firmware, Snapdragon_870_5g_mobile_platform_firmware, Snapdragon_w5\+_gen_1_wearable_platform_firmware, Snapdragon_x55_5g_modem\-Rf_system_firmware, Snapdragon_xr2_5g_platform_firmware, Sw5100_firmware, Sw5100p_firmware, Sxr2130_firmware, Video_collaboration_vc1_platform_firmware, Video_collaboration_vc3_platform_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9380_firmware, Wcn3660b_firmware, Wcn3680b_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
N/A
|
|
|
2024-12-02
|
CVE-2024-33036
|
Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in kernel and parsing which can lead to huge allocation or invalid memory access.
|
C\-V2x_9150_firmware, Fastconnect_6800_firmware, Fastconnect_6900_firmware, Fastconnect_7800_firmware, Qam8295p_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6574au_firmware, Qca6696_firmware, Qca8337_firmware, Qcn9074_firmware, Qcs410_firmware, Qcs610_firmware, Qsm8250_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8295p_firmware, Sa8530p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd865_5g_firmware, Sdx55_firmware, Snapdragon_865\+_5g_mobile_platform_firmware, Snapdragon_865_5g_mobile_platform_firmware, Snapdragon_870_5g_mobile_platform_firmware, Snapdragon_8_gen_1_mobile_platform_firmware, Snapdragon_w5\+_gen_1_wearable_platform_firmware, Snapdragon_x55_5g_modem\-Rf_system_firmware, Snapdragon_xr2_5g_platform_firmware, Sw5100_firmware, Sw5100p_firmware, Sxr2130_firmware, Video_collaboration_vc1_platform_firmware, Video_collaboration_vc3_platform_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9380_firmware, Wcn3660b_firmware, Wcn3680b_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
N/A
|
|
|
2022-01-03
|
CVE-2021-1894
|
Improper access control in TrustZone due to improper error handling while handling the signing key in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
|
Ar8031_firmware, Ar8035_firmware, Csra6620_firmware, Csra6640_firmware, Csrb31024_firmware, Fsm10055_firmware, Fsm10056_firmware, Mdm9150_firmware, Mdm9205_firmware, Mdm9628_firmware, Qca4004_firmware, Qca6174a_firmware, Qca6390_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6564_firmware, Qca6564a_firmware, Qca6564au_firmware, Qca6574_firmware, Qca6574a_firmware, Qca6574au_firmware, Qca6595au_firmware, Qca6696_firmware, Qca8081_firmware, Qca8337_firmware, Qca9367_firmware, Qca9377_firmware, Qca9984_firmware, Qcm2290_firmware, Qcm4290_firmware, Qcm6490_firmware, Qcs2290_firmware, Qcs405_firmware, Qcs410_firmware, Qcs4290_firmware, Qcs610_firmware, Qcs6490_firmware, Qcs8155_firmware, Qcx315_firmware, Qrb5165_firmware, Qrb5165n_firmware, Qsm8250_firmware, Sa415m_firmware, Sa515m_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sc8280xp_firmware, Sd460_firmware, Sd480_firmware, Sd662_firmware, Sd665_firmware, Sd675_firmware, Sd678_firmware, Sd690_5g_firmware, Sd720g_firmware, Sd730_firmware, Sd750g_firmware, Sd765_firmware, Sd765g_firmware, Sd768g_firmware, Sd778g_firmware, Sd780g_firmware, Sd7c_firmware, Sd850_firmware, Sd865_5g_firmware, Sd870_firmware, Sd888_5g_firmware, Sd888_firmware, Sd_675_firmware, Sd_8cx_firmware, Sdx24_firmware, Sdx55_firmware, Sdx55m_firmware, Sdx65_firmware, Sdxr1_firmware, Sdxr2_5g_firmware, Sm6225_firmware, Sm6250_firmware, Sm6250p_firmware, Sm6375_firmware, Sm7250p_firmware, Sm7315_firmware, Sm7325p_firmware, Sm8450_firmware, Sm8450p_firmware, Wcd9306_firmware, Wcd9330_firmware, Wcd9335_firmware, Wcd9340_firmware, Wcd9360_firmware, Wcd9370_firmware, Wcd9375_firmware, Wcd9380_firmware, Wcd9385_firmware, Wcn3910_firmware, Wcn3950_firmware, Wcn3988_firmware, Wcn3991_firmware, Wcn3999_firmware, Wcn6740_firmware, Wcn6750_firmware, Wcn6850_firmware, Wcn6851_firmware, Wcn6855_firmware, Wcn6856_firmware, Wsa8830_firmware, Wsa8835_firmware
|
7.8
|
|
|
2022-01-03
|
CVE-2021-30269
|
Possible null pointer dereference due to lack of TLB validation for user provided address in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
|
Ar8031_firmware, Ar8035_firmware, Csra6620_firmware, Csra6640_firmware, Csrb31024_firmware, Fsm10055_firmware, Fsm10056_firmware, Mdm9150_firmware, Mdm9205_firmware, Qca2066_firmware, Qca4004_firmware, Qca6174a_firmware, Qca6390_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6564_firmware, Qca6564a_firmware, Qca6564au_firmware, Qca6574_firmware, Qca6574a_firmware, Qca6574au_firmware, Qca6595au_firmware, Qca6696_firmware, Qca8081_firmware, Qca8337_firmware, Qca9377_firmware, Qca9984_firmware, Qcm2290_firmware, Qcm4290_firmware, Qcm6490_firmware, Qcn7605_firmware, Qcn7606_firmware, Qcs2290_firmware, Qcs405_firmware, Qcs410_firmware, Qcs4290_firmware, Qcs603_firmware, Qcs605_firmware, Qcs610_firmware, Qcs6490_firmware, Qcs8155_firmware, Qcx315_firmware, Qrb5165_firmware, Qrb5165n_firmware, Qsm8250_firmware, Sa415m_firmware, Sa515m_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sc8280xp_firmware, Sd460_firmware, Sd480_firmware, Sd662_firmware, Sd665_firmware, Sd675_firmware, Sd678_firmware, Sd690_5g_firmware, Sd720g_firmware, Sd730_firmware, Sd750g_firmware, Sd765_firmware, Sd765g_firmware, Sd768g_firmware, Sd778g_firmware, Sd780g_firmware, Sd7c_firmware, Sd850_firmware, Sd865_5g_firmware, Sd870_firmware, Sd888_5g_firmware, Sd888_firmware, Sd_675_firmware, Sd_8cx_firmware, Sdx24_firmware, Sdx55_firmware, Sdx55m_firmware, Sdx65_firmware, Sdxr1_firmware, Sdxr2_5g_firmware, Sm6225_firmware, Sm6250_firmware, Sm6250p_firmware, Sm6375_firmware, Sm7250p_firmware, Sm7315_firmware, Sm7325p_firmware, Sm8450_firmware, Sm8450p_firmware, Wcd9306_firmware, Wcd9360_firmware, Wcd9370_firmware, Wcd9375_firmware, Wcd9380_firmware, Wcd9385_firmware, Wcn3910_firmware, Wcn3950_firmware, Wcn3988_firmware, Wcn3991_firmware, Wcn3999_firmware, Wcn6740_firmware, Wcn6750_firmware, Wcn6850_firmware, Wcn6851_firmware, Wcn6855_firmware, Wcn6856_firmware, Wsa8830_firmware, Wsa8835_firmware
|
7.8
|
|
|
2022-04-01
|
CVE-2021-1950
|
Improper cleaning of secure memory between authenticated users can lead to face authentication bypass in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking
|
Ar8035_firmware, Csr8811_firmware, Ipq6000_firmware, Ipq6005_firmware, Ipq6010_firmware, Ipq6018_firmware, Ipq6028_firmware, Qca4024_firmware, Qca6390_firmware, Qca6391_firmware, Qca6426_firmware, Qca6436_firmware, Qca6574au_firmware, Qca6696_firmware, Qca8072_firmware, Qca8075_firmware, Qca8081_firmware, Qca9984_firmware, Qcm2290_firmware, Qcm4290_firmware, Qcm6490_firmware, Qcn5021_firmware, Qcn5022_firmware, Qcn5052_firmware, Qcn5121_firmware, Qcn5122_firmware, Qcn5152_firmware, Qcn6023_firmware, Qcn6024_firmware, Qcn9000_firmware, Qcn9022_firmware, Qcn9024_firmware, Qcn9070_firmware, Qcn9072_firmware, Qcn9074_firmware, Qcs2290_firmware, Qcs405_firmware, Qcs4290_firmware, Qcs610_firmware, Qcs6490_firmware, Qsm8250_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd460_firmware, Sd480_firmware, Sd662_firmware, Sd690_5g_firmware, Sd750g_firmware, Sd765_firmware, Sd765g_firmware, Sd768g_firmware, Sd778g_firmware, Sd865_5g_firmware, Sd870_firmware, Sd888_5g_firmware, Sdx55_firmware, Sdx55m_firmware, Sdx57m_firmware, Sdxr2_5g_firmware, Sm6225_firmware, Sm6375_firmware, Sm7250p_firmware, Sm7325p_firmware, Sxr2150p_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9375_firmware, Wcd9380_firmware, Wcd9385_firmware, Wcn3910_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wcn3991_firmware, Wcn3998_firmware, Wcn3999_firmware, Wcn6750_firmware, Wcn6850_firmware, Wcn6851_firmware, Wcn6855_firmware, Wcn6856_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
7.8
|
|
|
2022-04-01
|
CVE-2021-35115
|
Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon Mobile
|
Apq8096au_firmware, Ar6003_firmware, Mdm8215_firmware, Mdm8215m_firmware, Mdm8615m_firmware, Mdm9215_firmware, Mdm9310_firmware, Mdm9615_firmware, Mdm9615m_firmware, Msm8996au_firmware, Qca6564a_firmware, Qca6564au_firmware, Qca6574a_firmware, Qca6574au_firmware, Qca6584au_firmware, Qca6696_firmware, Sa6145p_firmware, Sa6150p_firmware, Sa6155p_firmware, Sa8145p_firmware, Sa8150p_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sdx55_firmware, Sdx55m_firmware, Wcd9341_firmware
|
7.8
|
|
|
2022-06-14
|
CVE-2021-35090
|
Possible hypervisor memory corruption due to TOC TOU race condition when updating address mappings in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
|
Aqt1000_firmware, Qca6390_firmware, Qca6391_firmware, Qca6420_firmware, Qca6421_firmware, Qca6426_firmware, Qca6430_firmware, Qca6431_firmware, Qca6436_firmware, Qcm6490_firmware, Qcs6490_firmware, Qrb5165_firmware, Qrb5165m_firmware, Qrb5165n_firmware, Qsm8350_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd690_5g_firmware, Sd750g_firmware, Sd765_firmware, Sd765g_firmware, Sd768g_firmware, Sd778g_firmware, Sd780g_firmware, Sd865_5g_firmware, Sd870_firmware, Sd888_5g_firmware, Sd888_firmware, Sd_8cx_firmware, Sd_8cx_gen2_firmware, Sdx55m_firmware, Sdxr2_5g_firmware, Sm7250p_firmware, Sm7315_firmware, Sm7325p_firmware, Wcd9340_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9375_firmware, Wcd9380_firmware, Wcd9385_firmware, Wcn3988_firmware, Wcn3991_firmware, Wcn3998_firmware, Wcn6740_firmware, Wcn6750_firmware, Wcn6850_firmware, Wcn6851_firmware, Wcn6855_firmware, Wcn6856_firmware, Wcn7850_firmware, Wcn7851_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
7.8
|
|
|
2022-06-14
|
CVE-2021-35094
|
Improper verification of timeout-based authentication in identity credential can lead to invalid authorization in HLOS in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile
|
Aqt1000_firmware, Qca6390_firmware, Qca6391_firmware, Qca6420_firmware, Qca6421_firmware, Qca6426_firmware, Qca6430_firmware, Qca6431_firmware, Qca6436_firmware, Qca6574_firmware, Qca6574a_firmware, Qca6574au_firmware, Qca6595au_firmware, Qca6696_firmware, Qcm2290_firmware, Qcm4290_firmware, Qcm6490_firmware, Qcs2290_firmware, Qcs4290_firmware, Qcs6490_firmware, Qsm8350_firmware, Sa6155_firmware, Sa6155p_firmware, Sa8155_firmware, Sa8155p_firmware, Sa8195p_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd460_firmware, Sd480_firmware, Sd662_firmware, Sd665_firmware, Sd675_firmware, Sd678_firmware, Sd680_firmware, Sd690_5g_firmware, Sd695_firmware, Sd720g_firmware, Sd730_firmware, Sd750g_firmware, Sd765_firmware, Sd765g_firmware, Sd768g_firmware, Sd778g_firmware, Sd780g_firmware, Sd855_firmware, Sd865_5g_firmware, Sd870_firmware, Sd888_5g_firmware, Sd_675_firmware, Sd_8cx_gen3_firmware, Sdx50m_firmware, Sdx55m_firmware, Sdxr2_5g_firmware, Sm4125_firmware, Sm6250_firmware, Sm7250p_firmware, Sm7325p_firmware, Wcd9341_firmware, Wcd9370_firmware, Wcd9375_firmware, Wcd9380_firmware, Wcd9385_firmware, Wcn3910_firmware, Wcn3950_firmware, Wcn3980_firmware, Wcn3988_firmware, Wcn3991_firmware, Wcn3998_firmware, Wcn6740_firmware, Wcn6750_firmware, Wcn6850_firmware, Wcn6851_firmware, Wcn6855_firmware, Wcn6856_firmware, Wcn7850_firmware, Wcn7851_firmware, Wsa8810_firmware, Wsa8815_firmware, Wsa8830_firmware, Wsa8835_firmware
|
7.8
|
|
|
2022-06-14
|
CVE-2021-35101
|
Improper handling of writes to virtual GICR control can lead to assertion failure in the hypervisor in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile
|
Aqt1000_firmware, Qca6390_firmware, Qca6391_firmware, Qca6420_firmware, Qca6421_firmware, Qca6426_firmware, Qca6430_firmware, Qca6431_firmware, Qca6436_firmware, Sa8540p_firmware, Sa9000p_firmware, Sd865_5g_firmware, Sd870_firmware, Sd888_5g_firmware, Sd_8cx_firmware, Sd_8cx_gen2_firmware, Sdx55m_firmware, Sdxr2_5g_firmware, Wcd9340_firmware, Wcd9341_firmware, Wcd9380_firmware, Wcn3998_firmware, Wsa8810_firmware, Wsa8815_firmware
|
6.5
|
|
|