
CVE-2024-33028 – Use After Free in Automotive Telematics
https://notcve.org/view.php?id=CVE-2024-33028
05 Aug 2024 — Memory corruption as fence object may still be accessed in timeline destruct after isync fence is released. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-416: Use After Free •

CVE-2024-33027 – Improper Access Control in Graphics Linux
https://notcve.org/view.php?id=CVE-2024-33027
05 Aug 2024 — Memory corruption can occur when arbitrary user-space app gains kernel level privilege to modify DDR memory by corrupting the GPU page table. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-284: Improper Access Control •

CVE-2024-33023 – Use After Free in Graphics Linux
https://notcve.org/view.php?id=CVE-2024-33023
05 Aug 2024 — Memory corruption while creating a fence to wait on timeline events, and simultaneously signal timeline events. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-416: Use After Free •

CVE-2024-33022 – Integer Overflow or Wraparound in Automotive GPU
https://notcve.org/view.php?id=CVE-2024-33022
05 Aug 2024 — Memory corruption while allocating memory in HGSL driver. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-190: Integer Overflow or Wraparound •

CVE-2024-33021 – Use of Uninitialized Variable in Automotive GPU
https://notcve.org/view.php?id=CVE-2024-33021
05 Aug 2024 — Memory corruption while processing IOCTL call to set metainfo. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-457: Use of Uninitialized Variable •

CVE-2024-33015 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33015
05 Aug 2024 — Transient DOS while parsing SCAN RNR IE when bytes received from AP is such that the size of the last param of IE is less than neighbor report. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-33014 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33014
05 Aug 2024 — Transient DOS while parsing ESP IE from beacon/probe response frame. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-33012 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33012
05 Aug 2024 — Transient DOS while parsing the multiple MBSSID IEs from the beacon, when the tag length is non-zero value but with end of beacon. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-33011 – Buffer Over-read in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33011
05 Aug 2024 — Transient DOS while parsing the MBSSID IE from the beacons, when the MBSSID IE length is zero. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-126: Buffer Over-read •

CVE-2024-33010 – Use After Free in WLAN Host
https://notcve.org/view.php?id=CVE-2024-33010
05 Aug 2024 — Transient DOS while parsing fragments of MBSSID IE from beacon frame. • https://docs.qualcomm.com/product/publicresources/securitybulletin/august-2024-bulletin.html • CWE-416: Use After Free •