Vulnerabilities (CVE)

Filtered by vendor Qualcomm Subscribe
Filtered by product Qsm8350 Firmware
Total 184 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-40530 1 Qualcomm 378 Aqt1000, Aqt1000 Firmware, Ar8031 and 375 more 2024-11-21 N/A 8.4 HIGH
Memory corruption in WLAN due to integer overflow to buffer overflow in WLAN during initialization phase.
CVE-2022-40529 1 Qualcomm 392 Aqt1000, Aqt1000 Firmware, Ar8031 and 389 more 2024-11-21 N/A 7.1 HIGH
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
CVE-2022-40523 1 Qualcomm 370 9205 Lte Modem, 9205 Lte Modem Firmware, Aqt1000 and 367 more 2024-11-21 N/A 7.1 HIGH
Information disclosure in Kernel due to indirect branch misprediction.
CVE-2022-40520 1 Qualcomm 294 Apq8064au, Apq8064au Firmware, Apq8096au and 291 more 2024-11-21 N/A 8.4 HIGH
Memory corruption due to stack-based buffer overflow in Core
CVE-2022-40519 1 Qualcomm 386 Aqt1000, Aqt1000 Firmware, Ar8031 and 383 more 2024-11-21 N/A 6.8 MEDIUM
Information disclosure due to buffer overread in Core
CVE-2022-40518 1 Qualcomm 320 Aqt1000, Aqt1000 Firmware, Ar8031 and 317 more 2024-11-21 N/A 6.8 MEDIUM
Information disclosure due to buffer overread in Core
CVE-2022-40517 1 Qualcomm 362 Aqt1000, Aqt1000 Firmware, Ar8031 and 359 more 2024-11-21 N/A 8.4 HIGH
Memory corruption in core due to stack-based buffer overflow
CVE-2022-40516 1 Qualcomm 368 Aqt1000, Aqt1000 Firmware, Ar8031 and 365 more 2024-11-21 N/A 8.4 HIGH
Memory corruption in Core due to stack-based buffer overflow.
CVE-2022-40514 1 Qualcomm 456 Aqt1000, Aqt1000 Firmware, Ar8031 and 453 more 2024-11-21 N/A 9.8 CRITICAL
Memory corruption due to buffer copy without checking the size of input in WLAN Firmware while processing CCKM IE in reassoc response frame.
CVE-2022-40512 1 Qualcomm 590 Apq8009, Apq8009 Firmware, Apq8017 and 587 more 2024-11-21 N/A 7.5 HIGH
Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.
CVE-2022-40507 1 Qualcomm 484 315 5g Iot Modem, 315 5g Iot Modem Firmware, 9205 Lte Modem and 481 more 2024-11-21 N/A 8.4 HIGH
Memory corruption due to double free in Core while mapping HLOS address to the list.
CVE-2022-33307 1 Qualcomm 220 Aqt1000, Aqt1000 Firmware, Qam8255p and 217 more 2024-11-21 N/A 8.4 HIGH
Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.
CVE-2022-33306 1 Qualcomm 262 Ar8035, Ar8035 Firmware, Ar9380 and 259 more 2024-11-21 N/A 7.5 HIGH
Transient DOS due to buffer over-read in WLAN while processing an incoming management frame with incorrectly filled IEs.
CVE-2022-33288 1 Qualcomm 256 315 5g Iot Modem, 315 5g Iot Modem Firmware, Aqt1000 and 253 more 2024-11-21 N/A 9.3 CRITICAL
Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information.
CVE-2022-33286 1 Qualcomm 562 Apq8009, Apq8009 Firmware, Apq8017 and 559 more 2024-11-21 N/A 7.5 HIGH
Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames.
CVE-2022-33285 1 Qualcomm 556 Apq8009, Apq8009 Firmware, Apq8017 and 553 more 2024-11-21 N/A 7.5 HIGH
Transient DOS due to buffer over-read in WLAN while parsing WLAN CSA action frames.
CVE-2022-33284 1 Qualcomm 352 Aqt1000, Aqt1000 Firmware, Ar8035 and 349 more 2024-11-21 N/A 8.2 HIGH
Information disclosure due to buffer over-read in WLAN while parsing BTM action frame.
CVE-2022-33283 1 Qualcomm 268 Ar8035, Ar8035 Firmware, Ar9380 and 265 more 2024-11-21 N/A 8.2 HIGH
Information disclosure due to buffer over-read in WLAN while WLAN frame parsing due to missing frame length check.
CVE-2022-33278 1 Qualcomm 246 Aqt1000, Aqt1000 Firmware, Ar8035 and 243 more 2024-11-21 N/A 7.8 HIGH
Memory corruption due to buffer copy without checking the size of input in HLOS when input message size is larger than the buffer capacity.
CVE-2022-33277 1 Qualcomm 486 Aqt1000, Aqt1000 Firmware, Ar8031 and 483 more 2024-11-21 N/A 8.4 HIGH
Memory corruption in modem due to buffer copy without checking size of input while receiving WMI command.