Pm855p
Qualcomm · 29 CVEs
Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to informat…
Feb 22, 2021
A buffer overflow can occur when playing an MKV clip due to lack of input validation in Snapdragon Auto, Snapdragon Com…
Feb 22, 2021
Improper access control when using mmap with the kgsl driver with a special offset value that can be provided to map th…
Feb 22, 2021
Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon…
Jan 21, 2021
Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array with…
Jan 21, 2021
Pointer variable which is freed is not cleared can result in memory corruption and leads to denial of service in Snapdr…
Jan 21, 2021
Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Au…
Jan 21, 2021
Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto,…
Jan 21, 2021
An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdra…
Jan 21, 2021
Buffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it…
Jan 21, 2021
Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in…
Jan 21, 2021
Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon A…
Jan 21, 2021
Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapd…
Jan 21, 2021
Possible integer overflow can occur when stream info update is called when total number of streams detected are zero wh…
Jan 21, 2021
Out of bound access in computer vision control due to improper validation of command length before processing it in Sna…
Jan 21, 2021
Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race conditi…
Jan 21, 2021
Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected i…
Jan 21, 2021
Race condition in HAL layer while processing callback objects received from HIDL due to lack of synchronization between…
Jan 21, 2021
Out of bound memory access in camera driver due to improper validation on data coming from UMD which is used for offset…
Jan 21, 2021
Out of bound access due to usage of an out-of-range pointer offset in the camera driver. in Snapdragon Auto, Snapdragon…
Jan 21, 2021
Out of bound write while copying data using IOCTL due to lack of check of array index received from user in Snapdragon…
Jan 21, 2021
Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and exten…
Jan 21, 2021
Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses p…
Jan 21, 2021
Out of bound memory access during music playback with modified content due to copying data without checking destination…
Jan 21, 2021
Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Au…
Jan 21, 2021
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2020-11287 | Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to information disclosure. in Snapdragon Auto, Snap… | HIGH | 0.69% | Feb 22, 2021 |
| CVE-2020-11283 | A buffer overflow can occur when playing an MKV clip due to lack of input validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdrago… | CRITICAL | 0.71% | Feb 22, 2021 |
| CVE-2020-11282 | Improper access control when using mmap with the kgsl driver with a special offset value that can be provided to map the memstore of the GPU to user space in S… | HIGH | 0.18% | Feb 22, 2021 |
| CVE-2020-3691 | Possible out of bound memory access in audio due to integer underflow while processing modified contents in Snapdragon Auto, Snapdragon Compute, Snapdragon Con… | CRITICAL | 1.05% | Jan 21, 2021 |
| CVE-2020-3686 | Possible memory out of bound issue during music playback when an incorrect bit stream content is copied into array without checking the length of array in Snap… | CRITICAL | 1.19% | Jan 21, 2021 |
| CVE-2020-3685 | Pointer variable which is freed is not cleared can result in memory corruption and leads to denial of service in Snapdragon Auto, Snapdragon Compute, Snapdrago… | HIGH | 0.92% | Jan 21, 2021 |
| CVE-2020-11225 | Out of bound access in WLAN driver due to lack of validation of array length before copying into array in Snapdragon Auto, Snapdragon Compute, Snapdragon Conne… | CRITICAL | 1.08% | Jan 21, 2021 |
| CVE-2020-11216 | Buffer over read can happen in video driver when playing clip with atomsize having value UINT32_MAX in Snapdragon Auto, Snapdragon Compute, Snapdragon Connecti… | CRITICAL | 0.91% | Jan 21, 2021 |
| CVE-2020-11215 | An out of bounds read can happen when processing VSA attribute due to improper minimum required length check in Snapdragon Auto, Snapdragon Compute, Snapdragon… | CRITICAL | 0.88% | Jan 21, 2021 |
| CVE-2020-11214 | Buffer over-read while processing NDL attribute if attribute length is larger than expected and then FW is treating it as more number of immutable schedules in… | HIGH | 0.78% | Jan 21, 2021 |
| CVE-2020-11213 | Out of bound reads might occur in while processing Service descriptor due to improper validation of length of fields in Snapdragon Auto, Snapdragon Compute, Sn… | CRITICAL | 0.87% | Jan 21, 2021 |
| CVE-2020-11212 | Out of bounds reads while parsing NAN beacons attributes and OUIs due to improper length of field check in Snapdragon Auto, Snapdragon Compute, Snapdragon Conn… | CRITICAL | 0.87% | Jan 21, 2021 |
| CVE-2020-11200 | Buffer over-read while parsing RPS due to lack of check of input validation on values received from user side. in Snapdragon Auto, Snapdragon Compute, Snapdrag… | HIGH | 0.78% | Jan 21, 2021 |
| CVE-2020-11197 | Possible integer overflow can occur when stream info update is called when total number of streams detected are zero while parsing TS clip with invalid data in… | CRITICAL | 0.91% | Jan 21, 2021 |
| CVE-2020-11180 | Out of bound access in computer vision control due to improper validation of command length before processing it in Snapdragon Auto, Snapdragon Compute, Snapdr… | HIGH | 0.22% | Jan 21, 2021 |
| CVE-2020-11179 | Arbitrary read and write to kernel addresses by temporarily overwriting ring buffer pointer and creating a race condition. in Snapdragon Auto, Snapdragon Compu… | HIGH | 0.32% | Jan 21, 2021 |
| CVE-2020-11167 | Memory corruption while calculating L2CAP packet length in reassembly logic when remote sends more data than expected in Snapdragon Auto, Snapdragon Compute, S… | CRITICAL | 1.22% | Jan 21, 2021 |
| CVE-2020-11152 | Race condition in HAL layer while processing callback objects received from HIDL due to lack of synchronization between accessing objects in Snapdragon Auto, S… | MEDIUM | 0.13% | Jan 21, 2021 |
| CVE-2020-11150 | Out of bound memory access in camera driver due to improper validation on data coming from UMD which is used for offset manipulation of pointer in Snapdragon A… | MEDIUM | 0.21% | Jan 21, 2021 |
| CVE-2020-11149 | Out of bound access due to usage of an out-of-range pointer offset in the camera driver. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapd… | MEDIUM | 0.21% | Jan 21, 2021 |
| CVE-2020-11146 | Out of bound write while copying data using IOCTL due to lack of check of array index received from user in Snapdragon Auto, Snapdragon Compute, Snapdragon Con… | HIGH | 0.21% | Jan 21, 2021 |
| CVE-2020-11145 | Divide by zero issue can happen while updating delta extension header due to improper validation of master SN and extension header SN in Snapdragon Auto, Snapd… | HIGH | 0.78% | Jan 21, 2021 |
| CVE-2020-11144 | Buffer over-read while UE process invalid DL ROHC packet for decompression due to lack of check of size of compresses packet in Snapdragon Auto, Snapdragon Com… | CRITICAL | 0.88% | Jan 21, 2021 |
| CVE-2020-11143 | Out of bound memory access during music playback with modified content due to copying data without checking destination buffer size in Snapdragon Auto, Snapdra… | CRITICAL | 1.05% | Jan 21, 2021 |
| CVE-2020-11140 | Out of bound memory access during music playback with ALAC modified content due to improper validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Conne… | CRITICAL | 1.05% | Jan 21, 2021 |
Showing 1 to 25 of 29 CVEs