Page 16 of 234 results (0.018 seconds)

CVSS: 7.1EPSS: 0%CPEs: 696EXPL: 0

06 Jun 2023 — information disclosure due to cryptographic issue in Core during RPMB read request. • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-310: Cryptographic Issues •

CVSS: 7.8EPSS: 0%CPEs: 384EXPL: 0

02 May 2023 — Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-617: Reachable Assertion •

CVSS: 7.3EPSS: 0%CPEs: 204EXPL: 0

02 May 2023 — Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •

CVSS: 7.8EPSS: 0%CPEs: 136EXPL: 0

02 May 2023 — Transient DOS due to reachable assertion in Modem during OSI decode scheduling. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-617: Reachable Assertion •

CVSS: 7.8EPSS: 0%CPEs: 80EXPL: 0

02 May 2023 — Transient DOS due to NULL pointer dereference in Modem while performing pullup for received TCP/UDP packet. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-476: NULL Pointer Dereference •

CVSS: 8.4EPSS: 0%CPEs: 706EXPL: 0

04 Apr 2023 — Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-190: Integer Overflow or Wraparound •

CVSS: 8.2EPSS: 0%CPEs: 78EXPL: 0

04 Apr 2023 — Information disclosure in Modem due to buffer over-read while receiving a IP header with malformed length. • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •

CVSS: 9.3EPSS: 0%CPEs: 256EXPL: 0

04 Apr 2023 — Memory corruption due to buffer copy without checking the size of input in Core while sending SCM command to get write protection information. • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 8.2EPSS: 0%CPEs: 78EXPL: 0

04 Apr 2023 — Information disclosure in Modem due to buffer over-read while getting length of Unfragmented headers in an IPv6 packet. • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •

CVSS: 9.3EPSS: 0%CPEs: 202EXPL: 0

04 Apr 2023 — Memory corruption due to integer overflow or wraparound in Core while DDR memory assignment. • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-190: Integer Overflow or Wraparound •