2024-11-26
|
CVE-2016-10394
|
Initial xbl_sec revision does not have all the debug policy features and critical checks.
|
Mdm9206_firmware, Mdm9607_firmware, Sd_835_firmware, Sd_845_firmware, Sd_850_firmware
|
7.8
|
|
|
2024-11-26
|
CVE-2017-11076
|
On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.
|
Msm8909w_firmware, Msm8996au_firmware, Sd_205_firmware, Sd_210_firmware, Sd_212_firmware, Sd_415_firmware, Sd_425_firmware, Sd_427_firmware, Sd_430_firmware, Sd_435_firmware, Sd_450_firmware, Sd_615_firmware, Sd_616_firmware, Sd_625_firmware, Sd_810_firmware, Sd_820_firmware, Sd_820a_firmware, Sd_835_firmware, Sd_845_firmware, Sdm429_firmware, Sdm439_firmware, Sdm630_firmware, Sdm632_firmware, Sdm636_firmware, Sdm660_firmware, Sdm710_firmware, Snapdragon_high_med_2016_firmware
|
9.8
|
|
|
2024-11-26
|
CVE-2017-15832
|
Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW
|
Mdm9206_firmware, Mdm9607_firmware, Sd_835_firmware, Sd_845_firmware, Sd_850_firmware
|
7.8
|
|
|
2024-11-26
|
CVE-2017-17772
|
In multiple functions that process 802.11 frames, out-of-bounds reads can occur due to insufficient validation.
|
Sd_450_firmware, Sd_625_firmware, Sd_820_firmware, Sd_820a_firmware, Sd_835_firmware, Sd_845_firmware, Sd_850_firmware
|
9.8
|
|
|
2024-11-26
|
CVE-2018-11922
|
Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user.
|
215_firmware, Mdm9206_firmware, Mdm9607_firmware, Mdm9640_firmware, Mdm9650_firmware, Sd_205_firmware, Sd_210_firmware, Sd_212_firmware, Sd_425_firmware, Sd_427_firmware, Sd_429_firmware, Sd_430_firmware, Sd_435_firmware, Sd_439_firmware, Sd_450_firmware, Sd_625_firmware, Sd_632_firmware, Sd_845_firmware, Sd_850_firmware, Sda660_firmware, Sdm439_firmware, Sdx20_firmware
|
5.5
|
|
|
2024-11-26
|
CVE-2018-11952
|
An image with a version lower than the fuse version may potentially be booted lead to improper authentication.
|
Mdm9206_firmware, Mdm9607_firmware, Mdm9640_firmware, Mdm9650_firmware, Msm8909w_firmware, Sd_205_firmware, Sd_210_firmware, Sd_212_firmware, Sd_415_firmware, Sd_425_firmware, Sd_430_firmware, Sd_450_firmware, Sd_615_firmware, Sd_616_firmware, Sd_617_firmware, Sd_625_firmware, Sd_650_firmware, Sd_652_firmware, Sd_810_firmware, Sd_820_firmware, Sd_820a_firmware, Sd_835_firmware, Sd_845_firmware
|
7.8
|
|
|
2024-11-26
|
CVE-2017-18306
|
Information disclosure due to uninitialized variable.
|
Sd_450_firmware, Sd_625_firmware, Sd_820_firmware, Sd_820a_firmware, Sd_835_firmware, Sd_845_firmware, Sd_850_firmware
|
5.5
|
|
|
2024-11-26
|
CVE-2017-18307
|
Information disclosure possible while audio playback.
|
Sd_450_firmware, Sd_625_firmware, Sd_820_firmware, Sd_820a_firmware, Sd_835_firmware, Sd_845_firmware, Sd_850_firmware
|
5.5
|
|
|
2024-11-26
|
CVE-2018-5852
|
An unsigned integer underflow vulnerability in IPA driver result into a buffer over-read while reading NAT entry using debugfs command 'cat /sys/kernel/debug/ipa/ip4_nat'
|
Mdm9206_firmware, Mdm9607_firmware, Mdm9640_firmware, Mdm9650_firmware, Msm8909w_firmware, Sd_205_firmware, Sd_210_firmware, Sd_212_firmware, Sd_415_firmware, Sd_425_firmware, Sd_430_firmware, Sd_450_firmware, Sd_615_firmware, Sd_616_firmware, Sd_617_firmware, Sd_625_firmware, Sd_650_firmware, Sd_652_firmware, Sd_810_firmware, Sd_820_firmware, Sd_820a_firmware, Sd_835_firmware, Sd_845_firmware
|
7.8
|
|
|
2024-11-22
|
CVE-2017-9711
|
Certain unprivileged processes are able to perform IOCTL calls.
|
Mdm9206_firmware, Mdm9607_firmware, Mdm9640_firmware, Mdm9650_firmware, Msm8909w_firmware, Sd_205_firmware, Sd_210_firmware, Sd_212_firmware, Sd_415_firmware, Sd_425_firmware, Sd_430_firmware, Sd_450_firmware, Sd_615_firmware, Sd_616_firmware, Sd_617_firmware, Sd_625_firmware, Sd_650_firmware, Sd_652_firmware, Sd_810_firmware, Sd_820_firmware, Sd_820a_firmware, Sd_835_firmware, Sd_845_firmware
|
7.8
|
|
|