Vulnerabilities
Vulnerable Software
Qualcomm:  >> Qcs410 Firmware  Security Vulnerabilities
Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.
CVSS Score
7.8
EPSS Score
0.001
Published
2023-09-05
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
CVSS Score
7.8
EPSS Score
0.0
Published
2023-09-05
Memory corruption while handling payloads from remote ESL.
CVSS Score
9.8
EPSS Score
0.001
Published
2023-09-05
Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.
CVSS Score
7.8
EPSS Score
0.0
Published
2023-09-05
Memory corruption in Audio during playback session with audio effects enabled.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-09-05
Memory corruption while allocating memory in COmxApeDec module in Audio.
CVSS Score
8.4
EPSS Score
0.001
Published
2023-08-08
The cam_get_device_priv function does not check the type of handle being returned (device/session/link). This would lead to invalid type usage if a wrong handle is passed to it.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-08-08
The buffer obtained from kernel APIs such as cam_mem_get_cpu_buf() may be readable/writable in userspace after kernel accesses it. In other words, user mode may race and modify the packet header (e.g. header.count), causing checks (e.g. size checks) in kernel code to be invalid. This may lead to out-of-bounds read/write issues.
CVSS Score
6.4
EPSS Score
0.0
Published
2023-08-08
In the function call related to CAM_REQ_MGR_RELEASE_BUF there is no check if the buffer is being used. So when a function called cam_mem_get_cpu_buf to get the kernel va to use, another thread can call CAM_REQ_MGR_RELEASE_BUF to unmap the kernel va which cause UAF of the kernel address.
CVSS Score
6.7
EPSS Score
0.0
Published
2023-08-08
Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.
CVSS Score
7.1
EPSS Score
0.001
Published
2023-08-08


Contact Us

Shodan ® - All rights reserved