Qualcomm

Qcn7605 Firmware

188 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.04%
  • Published 08.09.2020 10:15:12
  • Last modified 21.11.2024 04:26:02

u'Heap overflow in diag command handler due to lack of check of packet length received from user' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Indus...

  • EPSS 0.3%
  • Published 30.07.2020 12:15:12
  • Last modified 21.11.2024 05:31:35

Out of bound write while QoS DSCP mapping due to improper input validation for data received from association response frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Ind...

  • EPSS 0.3%
  • Published 30.07.2020 12:15:12
  • Last modified 21.11.2024 05:31:35

Possible out of bound access while processing assoc response from host due to improper length check before copying into buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon I...

  • EPSS 0.1%
  • Published 30.07.2020 12:15:11
  • Last modified 21.11.2024 04:25:57

Close and bind operations done on a socket can lead to a Use-After-Free condition. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snap...

  • EPSS 0.04%
  • Published 30.07.2020 12:15:11
  • Last modified 21.11.2024 04:26:05

Out of bounds read can happen in diag event set mask command handler when user provided length in the command request is less than expected length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connec...

  • EPSS 0.03%
  • Published 22.06.2020 07:15:11
  • Last modified 21.11.2024 04:25:58

While IPA driver processes route add rule IOCTL, there is no input validation of the rule ID prior to adding the rule to the IPA HW commit list in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectiv...

  • EPSS 0.04%
  • Published 22.06.2020 07:15:11
  • Last modified 21.11.2024 04:26:04

Integer overflow in diag command handler when user inputs a large value for number of tasks field in the request packet in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer...

  • EPSS 0.25%
  • Published 02.06.2020 15:15:14
  • Last modified 21.11.2024 05:31:28

Firmware will hit assert in WLAN firmware If encrypted data length in FILS IE of reassoc response is more than 528 bytes in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon...

  • EPSS 0.34%
  • Published 02.06.2020 15:15:13
  • Last modified 21.11.2024 05:31:24

Valid deauth/disassoc frames is dropped in case if RMF is enabled and some rouge peer keep on sending rogue deauth/disassoc frames due to improper enum values used to check the frame subtype in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer...

  • EPSS 0.04%
  • Published 02.06.2020 15:15:10
  • Last modified 21.11.2024 04:25:59

When attempting to create a new XFRM policy, a stack out-of-bounds read will occur if the user provides a template where the mode is set to a value that does not resolve to a valid XFRM mode in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer...