Qualcomm

Qcn7605 Firmware

191 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.09%
  • Veröffentlicht 18.12.2019 06:15:12
  • Zuletzt bearbeitet 21.11.2024 04:19:33

Buffer overwrite can occur in IEEE80211 header filling function due to lack of range check of array index received from firmware in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna...

  • EPSS 0.09%
  • Veröffentlicht 18.12.2019 06:15:12
  • Zuletzt bearbeitet 21.11.2024 04:19:34

Out of bounds memcpy can occur by providing the embedded NULL character string and length greater than the actual string length in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon ...

  • EPSS 0.29%
  • Veröffentlicht 18.12.2019 06:15:12
  • Zuletzt bearbeitet 21.11.2024 04:19:35

Out of boundary access is possible as there is no validation of data accessed against the received size of the packet in case of malicious firmware in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Conne...

  • EPSS 0.09%
  • Veröffentlicht 18.12.2019 06:15:11
  • Zuletzt bearbeitet 21.11.2024 04:19:14

Out of bound write can happen in WMI firmware event handler due to lack of validation of data received from WLAN firmware in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon...

  • EPSS 0.03%
  • Veröffentlicht 18.12.2019 06:15:11
  • Zuletzt bearbeitet 21.11.2024 04:19:14

Out of bound access occurs while handling the WMI FW event due to lack of check of buffer argument which comes directly from the WLAN FW in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial ...

  • EPSS 0.03%
  • Veröffentlicht 18.12.2019 06:15:11
  • Zuletzt bearbeitet 21.11.2024 04:19:23

Potential double free scenario if driver receives another DIAG_EVENT_LOG_SUPPORTED event from firmware as the pointer is not set to NULL on first call in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Co...

  • EPSS 0.03%
  • Veröffentlicht 18.12.2019 06:15:11
  • Zuletzt bearbeitet 21.11.2024 04:19:23

Improper validation of event buffer extracted from FW response can lead to integer overflow, which will allow to pass the length check and eventually will lead to buffer overwrite when event data is copied to context buffer in Snapdragon Auto, Snapdr...

  • EPSS 0.12%
  • Veröffentlicht 18.12.2019 06:15:10
  • Zuletzt bearbeitet 21.11.2024 03:44:21

When a fake broadcast/multicast 11w rmf without mmie received, since no proper length check in wma_process_bip, buffer overflow will happen in both cds_is_mmie_valid and qdf_nbuf_trim_tail in Snapdragon Auto, Snapdragon Consumer Electronics Connectiv...

  • EPSS 0.05%
  • Veröffentlicht 12.12.2019 09:15:12
  • Zuletzt bearbeitet 21.11.2024 04:19:26

Buffer overflow can occur due to usage of wrong datatype and missing length check before copying into buffer in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna...

  • EPSS 0.04%
  • Veröffentlicht 12.12.2019 09:15:12
  • Zuletzt bearbeitet 21.11.2024 04:19:28

Snapshot of IB can lead to invalid address access due to missing check for size in the related function in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrag...