Home/Product/qualcomm sm6125 firmware
Product

qualcomm sm6125 firmware

43 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-33080
all versions
Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.
7.5HIGH
CVE-2023-33070
all versions
Transient DOS in Automotive OS due to improper authentication to the secure IO calls.
7.1HIGH
CVE-2023-33063
all versions
Memory corruption in DSP Services during a remote call from HLOS to DSP.
7.8HIGH
CVE-2023-33054
all versions
Cryptographic issue in GPS HLOS Driver while downloading Qualcomm GNSS assistance data.
9.1CRITICAL
CVE-2023-33022
all versions
Memory corruption in HLOS while invoking IOCTL calls from user-space.
8.4HIGH
CVE-2023-33018
all versions
Memory corruption while using the UIM diag command to get the operators name.
7.8HIGH
CVE-2023-33017
all versions
Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.
7.8HIGH
CVE-2023-33059
all versions
Memory corruption in Audio while processing the VOC packet data from ADSP.
7.8HIGH
CVE-2023-28540
all versions
Cryptographic issue in Data Modem due to improper authentication during TLS handshake.
9.1CRITICAL
CVE-2023-28560
all versions
Memory corruption in WLAN HAL while processing devIndex from untrusted WMI payload.
7.8HIGH
CVE-2023-21670
all versions
Memory Corruption in GPU Subsystem due to arbitrary command execution from GPU in privileged mode.
7.8HIGH
CVE-2023-21659
all versions
Transient DOS in WLAN Firmware while processing frames with missing header fields.
7.5HIGH
CVE-2023-21628
all versions
Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.
8.4HIGH
CVE-2022-40529
all versions
Memory corruption due to improper access control in kernel while processing a mapping request from root process.
7.1HIGH
CVE-2022-40523
all versions
Information disclosure in Kernel due to indirect branch misprediction.
7.1HIGH
CVE-2022-40521
all versions
Transient DOS due to improper authorization in Modem
7.5HIGH
CVE-2022-40507
all versions
Memory corruption due to double free in Core while mapping HLOS address to the list.
8.4HIGH
CVE-2022-33264
all versions
Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.
7.9HIGH
CVE-2022-22076
all versions
information disclosure due to cryptographic issue in Core during RPMB read request.
7.1HIGH
CVE-2022-40504
all versions
Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.
7.5HIGH
CVE-2023-21666
all versions
Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.
8.4HIGH
CVE-2023-21665
all versions
Memory corruption in Graphics while importing a file.
8.4HIGH
CVE-2022-40532
all versions
Memory corruption due to integer overflow or wraparound in WLAN while sending WMI cmd from host to target.
8.4HIGH
CVE-2022-40503
all versions
Information disclosure due to buffer over-read in Bluetooth Host while A2DP streaming.
8.2HIGH
CVE-2022-33302
all versions
Memory corruption due to improper validation of array index in User Identity Module when APN TLV length is greater than command le
6.8MEDIUM
CVE-2022-33296
all versions
Memory corruption due to integer overflow to buffer overflow in Modem while parsing Traffic Channel Neighbor List Update message.
5.9MEDIUM
CVE-2022-33289
all versions
Memory corruption occurs in Modem due to improper validation of array index when malformed APDU is sent from card.
6.8MEDIUM
CVE-2022-33231
all versions
Memory corruption due to double free in core while initializing the encryption key.
9.3CRITICAL
CVE-2021-30327
all versions
Buffer overflow in sahara protocol while processing commands leads to overwrite of secure configuration data in Snapdragon Mobile,
7.5HIGH
CVE-2020-3639
all versions
u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cycle or memo
9.8CRITICAL
CVE-2020-11207
all versions
Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snapdragon Com
7.8HIGH
CVE-2020-11206
all versions
Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in Snapdrago
7.8HIGH
CVE-2020-11202
all versions
Buffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligned with the
7.8HIGH
CVE-2020-11201
all versions
Arbitrary access to DSP memory due to improper check in loaded library for data received from CPU side' in Snapdragon Auto, Snapdr
7.8HIGH
CVE-2020-11196
all versions
u'Integer overflow to buffer overflow occurs while playback of ASF clip having unexpected number of codec entries' in Snapdragon A
9.8CRITICAL
CVE-2020-11193
all versions
u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snapdragon Aut
9.8CRITICAL
CVE-2020-11184
all versions
u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, Snapdragon
9.8CRITICAL
CVE-2020-11175
all versions
u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been deleted due
7.8HIGH
CVE-2020-11168
all versions
u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond its range'
9.8CRITICAL
CVE-2020-11132
all versions
u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdragon Auto, S
7.1HIGH
CVE-2020-11130
all versions
u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Auto, Snapdra
7.8HIGH
CVE-2020-11123
all versions
u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attempts at get
5.5MEDIUM
CVE-2020-11121
all versions
u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in Snapdragon
7.8HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin