VendorsQualcommqca4004_firmwareall versions
Vulnerabilities

Qualcomm QCA4004 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

162CVEs
CVE-2022-33213
Memory Corruption in MODEM
Published 2023-03-07 · Modified
8.8EPSS 0.004
CVE-2020-11269
Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2021-02-22 · Modified
8.8EPSS 0.003
CVE-2020-11177
User can overwrite Security Code NV item without knowing current SPC due to improper validation of SPC code setting and device lock in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-02-22 · Modified
8.8EPSS 0.002
CVE-2023-28585
Integer Overflow to Buffer Overflow in TZ Secure OS
Published 2023-12-05 · Modified
8.8EPSS 0.001
CVE-2022-40507
Double free in Core
Published 2023-06-06 · Modified
8.4EPSS 0.013
CVE-2022-40516
Stack-based buffer overflow in Core
Published 2023-01-06 · Modified
8.4EPSS 0.009
CVE-2022-40520
Stack based buffer overflow in Core
Published 2023-01-06 · Modified
8.4EPSS 0.007
CVE-2021-1889
Possible buffer overflow due to lack of length check in Trusted Application in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-07-13 · Modified
8.4EPSS 0.002
CVE-2021-1890
Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-07-13 · Modified
8.4EPSS 0.002
CVE-2021-1886
Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-07-13 · Modified
8.4EPSS 0.002
CVE-2021-1888
Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-07-13 · Modified
8.4EPSS 0.002
CVE-2021-30261
Possible integer and heap overflow due to lack of input command size validation while handling beacon template update command from HLOS in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2021-09-17 · Modified
8.4EPSS 0.002
CVE-2021-30281
Possible unauthorized access to secure space due to improper check of data allowed while flashing the no access control device configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and Networking
Published 2022-06-14 · Modified
8.4EPSS 0.002
CVE-2021-30274
Possible integer overflow in access control initialization interface due to lack and size and address validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
CVE-2021-30282
Possible out of bound write in RAM partition table due to improper validation on number of partitions provided in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking
Published 2022-01-03 · Modified
8.4EPSS 0.002
CVE-2022-40517
Stack based buffer overflow in Core
Published 2023-01-06 · Modified
8.4EPSS 0.001
CVE-2022-25682
Memory corruption in MODEM UIM due to usage of out of range pointer offset while decoding command from card in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-12-13 · Modified
8.4EPSS 0.001
CVE-2022-25695
Memory corruption in MODEM due to Improper Validation of Array Index while processing GSTK Proactive commands in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables
Published 2022-12-13 · Modified
8.4EPSS 0.001
CVE-2023-24852
Improper Authentication in Core
Published 2023-11-07 · Modified
8.4EPSS 0.001
CVE-2022-25694
Use of Out-of-range Pointer Offset in MODEM
Published 2023-03-07 · Modified
8.4EPSS 0.001
CVE-2022-40531
Incorrect type conversion in WLAN
Published 2023-03-07 · Modified
8.4EPSS 0.001
CVE-2023-33033
Use of Out-of-range Pointer Offset in Audio
Published 2024-01-02 · Modified
8.4EPSS 0.001
CVE-2022-40532
Integer overflow or wraparound in WLAN
Published 2023-04-04 · Modified
8.4EPSS 0.001
CVE-2023-28547
Buffer Copy Without Checking Size of Input in SPS Applications
Published 2024-04-01 · Analyzed
8.4EPSS 0.001
CVE-2023-33066
Use of Out-of-range Pointer Offset in Audio
Published 2024-03-04 · Analyzed
8.4EPSS 0.001
CVE-2024-33056
Buffer Over-read in MProc
Published 2024-12-02 · Analyzed
8.4EPSS 0.001
CVE-2024-21461
Double Free in HLOS
Published 2024-07-01 · Modified
8.4EPSS 0.001
CVE-2022-25728
Buffer Over-read in MODEM
Published 2023-02-09 · Modified
8.2EPSS 0.004
CVE-2022-33229
Buffer over-read in Modem
Published 2023-02-09 · Modified
8.2EPSS 0.004
CVE-2022-25732
Buffer Over-read in MODEM
Published 2023-02-09 · Modified
8.2EPSS 0.004
CVE-2022-25738
Buffer Over-read in MODEM
Published 2023-02-09 · Modified
8.2EPSS 0.004
CVE-2022-33228
Buffer over-read in Modem
Published 2023-04-04 · Modified
8.2EPSS 0.004
CVE-2022-25726
Buffer Over-read in MODEM
Published 2023-04-04 · Modified
8.2EPSS 0.004
CVE-2023-21625
Buffer Over-read in Network Services
Published 2023-08-08 · Modified
8.2EPSS 0.004
CVE-2022-33222
Buffer over-read in Modem
Published 2023-04-04 · Modified
8.2EPSS 0.004
CVE-2022-25747
Buffer Over-read in MODEM
Published 2023-04-04 · Modified
8.2EPSS 0.004
CVE-2022-33287
Buffer over-read in Modem
Published 2023-04-04 · Modified
8.2EPSS 0.004
CVE-2022-33258
Buffer over-read in Modem
Published 2023-04-04 · Modified
8.2EPSS 0.004
CVE-2022-25730
Buffer Over-read in MODEM
Published 2023-04-04 · Modified
8.2EPSS 0.004
CVE-2022-33291
Buffer over-read in Modem
Published 2023-04-04 · Modified
8.2EPSS 0.004
← Prev2 / 5Next →