Home/Product/qualcomm sm4450 firmware
Product

qualcomm sm4450 firmware

34 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-33040
all versions
Transient DOS in Data Modem during DTLS handshake.
7.5HIGH
CVE-2023-33038
all versions
Memory corruption while receiving a message in Bus Socket Transport Server.
6.7MEDIUM
CVE-2023-33037
all versions
Cryptographic issue in Automotive while unwrapping the key secs2d and verifying with RPMB data.
7.1HIGH
CVE-2023-33033
all versions
Memory corruption in Audio during playback with speaker protection.
8.4HIGH
CVE-2023-33030
all versions
Memory corruption in HLOS while running playready use-case.
9.3CRITICAL
CVE-2023-33025
all versions
Memory corruption in Data Modem when a non-standard SDP body, during a VOLTE call.
9.8CRITICAL
CVE-2023-33014
all versions
Information disclosure in Core services while processing a Diag command.
7.6HIGH
CVE-2023-33029
all versions
Memory corruption in DSP Service during a remote call from HLOS to DSP.
8.4HIGH
CVE-2023-28584
all versions
Transient DOS in WLAN Host when a mobile station receives invalid channel in CSA IE while doing channel switch announcement (CSA).
7.5HIGH
CVE-2023-28567
all versions
Memory corruption in WLAN HAL while handling command through WMI interfaces.
7.8HIGH
CVE-2023-28565
all versions
Memory corruption in WLAN HAL while handling command streams through WMI interfaces.
7.8HIGH
CVE-2023-28564
all versions
Memory corruption in WLAN HAL while passing command parameters through WMI interfaces.
7.8HIGH
CVE-2023-28560
all versions
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
7.8HIGH
CVE-2023-28559
all versions
Memory corruption in WLAN FW while processing command parameters from untrusted WMI payload.
7.8HIGH
CVE-2023-28558
all versions
Memory corruption in WLAN handler while processing PhyID in Tx status handler.
7.8HIGH
CVE-2023-28557
all versions
Memory corruption in WLAN HAL while processing command parameters from untrusted WMI payload.
7.8HIGH
CVE-2023-28549
all versions
Memory corruption in WLAN HAL while parsing Rx buffer in processing TLV payload.
7.8HIGH
CVE-2023-28544
all versions
Memory corruption in WLAN while sending transmit command from HLOS to UTF handlers.
7.8HIGH
CVE-2022-33275
all versions
Memory corruption due to improper validation of array index in WLAN HAL when received lm_itemNum is out of range.
8.4HIGH
CVE-2023-28555
all versions
Transient DOS in Audio while remapping channel buffer in media codec decoding.
7.5HIGH
CVE-2023-21670
all versions
Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.
7.8HIGH
CVE-2023-21659
all versions
Transient DOS in WLAN Firmware while processing frames with missing header fields.
7.5HIGH
CVE-2023-21656
all versions
Memory corruption in WLAN HOST while receiving an WMI event from firmware.
7.8HIGH
CVE-2023-21628
all versions
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
8.4HIGH
CVE-2022-40536
all versions
Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.
7.5HIGH
CVE-2022-40533
all versions
Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.
6.2MEDIUM
CVE-2022-40529
all versions
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
7.1HIGH
CVE-2022-40523
all versions
Information disclosure in Kernel due to indirect branch misprediction.
7.1HIGH
CVE-2022-40521
all versions
Transient DOS due to improper authorization in Modem
7.5HIGH
CVE-2022-40507
all versions
Memory corruption due to double free in Core while mapping HLOS address to the list.
8.4HIGH
CVE-2022-33263
all versions
Memory corruption due to use after free in Core when multiple DCI clients register and deregister.
6.7MEDIUM
CVE-2022-22076
all versions
information disclosure due to cryptographic issue in Core during RPMB read request.
7.1HIGH
CVE-2022-40504
all versions
Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.
7.5HIGH
CVE-2022-34144
all versions
Transient DOS due to reachable assertion in Modem during OSI decode scheduling.
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin