Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Qca9984
Total 218 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-28544 1 Qualcomm 412 Aqt1000, Aqt1000 Firmware, Ar9380 and 409 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers.
CVE-2023-28541 1 Qualcomm 398 Aqt1000, Aqt1000 Firmware, Ar8031 and 395 more 2024-04-12 N/A 7.8 HIGH
Memory Corruption in Data Modem while processing DMA buffer release event about CFR data.
CVE-2023-28539 1 Qualcomm 314 Ar8035, Ar8035 Firmware, Ar9380 and 311 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in WLAN Host when the firmware invokes multiple WMI Service Available command.
CVE-2023-24852 1 Qualcomm 542 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 539 more 2024-04-12 N/A 7.8 HIGH
Memory Corruption in Core due to secure memory access by user while loading modem image.
CVE-2023-24847 1 Qualcomm 514 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 511 more 2024-04-12 N/A 7.5 HIGH
Transient DOS in Modem while allocating DSM items.
CVE-2023-22387 1 Qualcomm 542 205, 205 Firmware, 215 and 539 more 2024-04-12 N/A 7.8 HIGH
Arbitrary memory overwrite when VM gets compromised in TX write leading to Memory Corruption.
CVE-2023-21661 1 Qualcomm 230 Ar8035, Ar8035 Firmware, Ar9380 and 227 more 2024-04-12 N/A 7.5 HIGH
Transient DOS while parsing WLAN beacon or probe-response frame.
CVE-2023-21659 1 Qualcomm 540 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 537 more 2024-04-12 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while processing frames with missing header fields.
CVE-2023-21658 1 Qualcomm 302 Ar8035, Ar8035 Firmware, Ar9380 and 299 more 2024-04-12 N/A 7.5 HIGH
Transient DOS in WLAN Firmware while processing the received beacon or probe response frame.
CVE-2023-21651 1 Qualcomm 280 Aqt1000, Aqt1000 Firmware, Ar8031 and 277 more 2024-04-12 N/A 7.8 HIGH
Memory Corruption in Core due to incorrect type conversion or cast in secure_io_read/write function in TEE.
CVE-2023-21628 1 Qualcomm 566 Apq8017, Apq8017 Firmware, Apq8064au and 563 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
CVE-2022-40532 1 Qualcomm 706 315 5g Iot Modem, 315 5g Iot Modem Firmware, 8905 and 703 more 2024-04-12 N/A 7.8 HIGH
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
CVE-2022-40531 1 Qualcomm 568 Apq8009, Apq8009 Firmware, Apq8017 and 565 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.
CVE-2022-40530 1 Qualcomm 378 Aqt1000, Aqt1000 Firmware, Ar8031 and 375 more 2024-04-12 N/A 7.8 HIGH
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
CVE-2022-40529 1 Qualcomm 392 Aqt1000, Aqt1000 Firmware, Ar8031 and 389 more 2024-04-12 N/A 7.8 HIGH
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
CVE-2022-40523 1 Qualcomm 370 9205 Lte Modem, 9205 Lte Modem Firmware, Aqt1000 and 367 more 2024-04-12 N/A 5.5 MEDIUM
Information disclosure in Kernel due to indirect branch misprediction.
CVE-2022-40514 1 Qualcomm 456 Aqt1000, Aqt1000 Firmware, Ar8031 and 453 more 2024-04-12 N/A 9.8 CRITICAL
Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.
CVE-2022-40512 1 Qualcomm 590 Apq8009, Apq8009 Firmware, Apq8017 and 587 more 2024-04-12 N/A 7.5 HIGH
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
CVE-2022-40510 1 Qualcomm 408 Apq8009, Apq8009 Firmware, Apq8009w and 405 more 2024-04-12 N/A 9.8 CRITICAL
Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.
CVE-2022-40507 1 Qualcomm 484 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 481 more 2024-04-12 N/A 7.8 HIGH
Memory corruption due to double free in Core while mapping HLOS address to the list.