
CVE-2022-22060 – Reachable Assertion in Modem
https://notcve.org/view.php?id=CVE-2022-22060
06 Jun 2023 — Assertion occurs while processing Reconfiguration message due to improper validation • https://www.qualcomm.com/company/product-security/bulletins/june-2023-bulletin • CWE-617: Reachable Assertion •

CVE-2022-40504 – Reachable assertion in Modem
https://notcve.org/view.php?id=CVE-2022-40504
02 May 2023 — Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-617: Reachable Assertion •

CVE-2022-33273 – Buffer over-read in Trusted Execution Environment
https://notcve.org/view.php?id=CVE-2022-33273
02 May 2023 — Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-125: Out-of-bounds Read CWE-126: Buffer Over-read •

CVE-2022-40508 – Reachable assertion in Modem
https://notcve.org/view.php?id=CVE-2022-40508
02 May 2023 — Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-617: Reachable Assertion •

CVE-2022-34144 – Reachable assertion in Modem
https://notcve.org/view.php?id=CVE-2022-34144
02 May 2023 — Transient DOS due to reachable assertion in Modem during OSI decode scheduling. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-617: Reachable Assertion •

CVE-2022-33305 – Null pointer dereference in Modem
https://notcve.org/view.php?id=CVE-2022-33305
02 May 2023 — Transient DOS due to NULL pointer dereference in Modem while sending invalid messages in DCCH. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-476: NULL Pointer Dereference •

CVE-2022-33281 – Improper validation of array index in computer vision.
https://notcve.org/view.php?id=CVE-2022-33281
02 May 2023 — Memory corruption due to improper validation of array index in computer vision while testing EVA kernel without sending any frames. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-129: Improper Validation of Array Index •

CVE-2022-25713 – Improper Restriction of Operations within the Bounds of a Memory Buffer in Automotive
https://notcve.org/view.php?id=CVE-2022-25713
02 May 2023 — Memory corruption in Automotive due to Improper Restriction of Operations within the Bounds of a Memory Buffer while exporting a shared key. • https://www.qualcomm.com/company/product-security/bulletins/may-2023-bulletin • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2023-21630 – Integer Overflow in Multimedia Framework
https://notcve.org/view.php?id=CVE-2023-21630
04 Apr 2023 — Memory Corruption in Multimedia Framework due to integer overflow when synx bind is called along with synx signal. • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-190: Integer Overflow or Wraparound CWE-191: Integer Underflow (Wrap or Wraparound) •

CVE-2022-40532 – Integer overflow or wraparound in WLAN
https://notcve.org/view.php?id=CVE-2022-40532
04 Apr 2023 — Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target. • https://www.qualcomm.com/company/product-security/bulletins/april-2023-bulletin • CWE-190: Integer Overflow or Wraparound •