This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Qualcomm First view 2023-04-13
Product Snapdragon xr1 Platform Firmware Last view 2024-12-02
Version Type Os
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:o:qualcomm:snapdragon_xr1_platform_firmware:-:*:*:*:*:*:*:* 78

Related : CVE

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
  Date Alert Description
7.8 2024-12-02 CVE-2024-33056

Memory corruption when allocating and accessing an entry in an SMEM partition continuously.

7.8 2024-11-04 CVE-2024-38423

Memory corruption while processing GPU page table switch.

7.8 2024-11-04 CVE-2024-38422

Memory corruption while processing voice packet with arbitrary data received from ADSP.

7.8 2024-11-04 CVE-2024-38419

Memory corruption while invoking IOCTL calls from the use-space for HGSL memory node.

7.8 2024-11-04 CVE-2024-38415

Memory corruption while handling session errors from firmware.

5.5 2024-09-02 CVE-2024-33043

Transient DOS while handling PS event when Program Service name length offset value is set to 255.

7.8 2024-08-05 CVE-2024-33027

Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table.

7.5 2024-08-05 CVE-2024-33014

Transient DOS while parsing ESP IE from beacon/probe response frame.

5.5 2024-08-05 CVE-2024-23357

Transient DOS while importing a PKCS#8-encoded RSA key with zero bytes modulus.

7.8 2024-08-05 CVE-2024-23356

Memory corruption during session sign renewal request calls in HLOS.

7.5 2024-08-05 CVE-2024-23353

Transient DOS while decoding attach reject message received by UE, when IEI is set to ESM_IEI.

7.8 2024-07-01 CVE-2024-23373

Memory corruption when IOMMU unmap operation fails, the DMA and anon buffers are getting released.

7.8 2024-07-01 CVE-2024-23368

Memory corruption when allocating and accessing an entry in an SMEM partition.

7.8 2024-07-01 CVE-2024-21465

Memory corruption while processing key blob passed by the user.

7.8 2024-07-01 CVE-2024-21461

Memory corruption while performing finish HMAC operation when context is freed by keymaster.

7.5 2024-02-06 CVE-2023-43536

Transient DOS while parse fils IE with length equal to 1.

7.5 2024-02-06 CVE-2023-43533

Transient DOS in WLAN Firmware when the length of received beacon is less than length of ieee802.11 beacon frame.

9.8 2024-02-06 CVE-2023-43518

Memory corruption in video while parsing invalid mp2 clip.

7.8 2024-02-06 CVE-2023-43513

Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

7.8 2024-02-06 CVE-2023-33077

Memory corruption in HLOS while converting from authorization token to HIDL vector.

7.5 2024-01-02 CVE-2023-43511

Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.

0 2024-01-02 CVE-2023-33120

Memory corruption in Audio when memory map command is executed consecutively in ADSP.

7 2024-01-02 CVE-2023-33110

The session index variable in PCM host voice audio driver initialized before PCM open, accessed during event callback from ADSP and reset during PCM close may lead to race condition between event callback - PCM close and reset session index causing memory corruption.

0 2024-01-02 CVE-2023-33109

Transient DOS while processing a WMI P2P listen start command (0xD00A) sent from host.

0 2024-01-02 CVE-2023-33062

Transient DOS in WLAN Firmware while parsing a BTM request.

CWE : Common Weakness Enumeration

%idName
26% (17) CWE-787 Out-of-bounds Write
15% (10) CWE-125 Out-of-bounds Read
9% (6) CWE-416 Use After Free
9% (6) CWE-190 Integer Overflow or Wraparound
9% (6) CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflo...
6% (4) CWE-476 NULL Pointer Dereference
6% (4) CWE-129 Improper Validation of Array Index
4% (3) CWE-415 Double Free
3% (2) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
1% (1) CWE-704 Incorrect Type Conversion or Cast
1% (1) CWE-617 Reachable Assertion
1% (1) CWE-401 Failure to Release Memory Before Removing Last Reference ('Memory L...
1% (1) CWE-362 Race Condition
1% (1) CWE-287 Improper Authentication