Summary
Detail | |||
---|---|---|---|
Vendor | Qualcomm | First view | 2021-01-21 |
Product | qca6696 Firmware | Last view | 2025-03-03 |
Version | - | Type | Os |
Update | * | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | * | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:o:qualcomm:qca6696_firmware |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
7.8 | 2025-03-03 | CVE-2025-21424 | Memory corruption while calling the NPU driver APIs concurrently. |
7 | 2025-03-03 | CVE-2024-53032 | Memory corruption may occur in keyboard virtual device due to guest VM interaction. |
7.8 | 2025-03-03 | CVE-2024-53031 | Memory corruption while reading a type value from a buffer controlled by the Guest Virtual Machine. |
7.8 | 2025-03-03 | CVE-2024-53030 | Memory corruption while processing input message passed from FE driver. |
7.5 | 2025-03-03 | CVE-2024-53027 | Transient DOS may occur while processing the country IE. |
7.8 | 2025-03-03 | CVE-2024-53024 | Memory corruption in display driver while detaching a device. |
7.8 | 2025-03-03 | CVE-2024-53023 | Memory corruption may occur while accessing a variable during extended back to back tests. |
7.8 | 2025-03-03 | CVE-2024-53022 | Memory corruption may occur during communication between primary and guest VM. |
7.8 | 2025-03-03 | CVE-2024-53014 | Memory corruption may occur while validating ports and channels in Audio driver. |
7.8 | 2025-03-03 | CVE-2024-43061 | Memory corruption during voice activation, when sound model parameters are loaded from HLOS, and the received sound model list is empty in HLOS drive. |
7.8 | 2025-03-03 | CVE-2024-43060 | Memory corruption during voice activation, when sound model parameters are loaded from HLOS to ADSP. |
7.8 | 2025-03-03 | CVE-2024-43057 | Memory corruption while processing command in Glink linux. |
6.5 | 2025-03-03 | CVE-2024-43056 | Transient DOS during hypervisor virtual I/O operation in a virtual machine. |
5.5 | 2025-03-03 | CVE-2024-43051 | Information disclosure while deriving keys for a session for any Widevine use case. |
5.3 | 2025-03-03 | CVE-2024-38426 | While processing the authentication message in UE, improper authentication may lead to information disclosure. |
9.8 | 2025-02-03 | CVE-2024-49839 | Memory corruption during management frame processing due to mismatch in T2LM info element. |
7.5 | 2025-02-03 | CVE-2024-49838 | Information disclosure while parsing the OCI IE with invalid length. |
7.8 | 2025-02-03 | CVE-2024-49837 | Memory corruption while reading CPU state data during guest VM suspend. |
7.8 | 2025-02-03 | CVE-2024-45584 | Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace. |
7.8 | 2025-02-03 | CVE-2024-45571 | Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface. |
9.8 | 2025-02-03 | CVE-2024-45569 | Memory corruption while parsing the ML IE due to invalid frame content. |
7.8 | 2025-02-03 | CVE-2024-38420 | Memory corruption while configuring a Hypervisor based input virtual device. |
7 | 2025-02-03 | CVE-2024-38418 | Memory corruption while parsing the memory map info in IOCTL calls. |
5.5 | 2025-02-03 | CVE-2024-38417 | Information disclosure while processing IO control commands. |
5.5 | 2025-02-03 | CVE-2024-38416 | Information disclosure during audio playback. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
20% (151) | CWE-125 | Out-of-bounds Read |
16% (122) | CWE-787 | Out-of-bounds Write |
11% (82) | CWE-416 | Use After Free |
9% (71) | CWE-120 | Buffer Copy without Checking Size of Input ('Classic Buffer Overflo... |
6% (46) | CWE-190 | Integer Overflow or Wraparound |
5% (40) | CWE-617 | Reachable Assertion |
5% (38) | CWE-129 | Improper Validation of Array Index |
4% (33) | CWE-20 | Improper Input Validation |
4% (31) | CWE-476 | NULL Pointer Dereference |
3% (27) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
2% (16) | CWE-415 | Double Free |
2% (15) | CWE-367 | Time-of-check Time-of-use (TOCTOU) Race Condition |
2% (15) | CWE-287 | Improper Authentication |
1% (12) | CWE-704 | Incorrect Type Conversion or Cast |
0% (6) | CWE-401 | Failure to Release Memory Before Removing Last Reference ('Memory L... |
0% (6) | CWE-400 | Uncontrolled Resource Consumption ('Resource Exhaustion') |
0% (5) | CWE-362 | Race Condition |
0% (4) | CWE-200 | Information Exposure |
0% (3) | CWE-191 | Integer Underflow (Wrap or Wraparound) |
0% (2) | CWE-770 | Allocation of Resources Without Limits or Throttling |
0% (2) | CWE-755 | Improper Handling of Exceptional Conditions |
0% (2) | CWE-668 | Exposure of Resource to Wrong Sphere |
0% (2) | CWE-347 | Improper Verification of Cryptographic Signature |
0% (2) | CWE-126 | Buffer Over-read |
0% (1) | CWE-798 | Use of Hard-coded Credentials |