Latest qualcomm sm6150 firmware Vulnerabilities

Reachable assertion in Modem
Google Android
Qualcomm 315 5g Iot Modem Firmware
Qualcomm 315 5g Iot Modem
Google Android
Qualcomm Apq8017
Google Android
and 751 more
Arbitrary access to DSP memory due to improper check in loaded library for data received from CPU side' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snap...
Google Android
Google Android
Google Android
Google Android
Qualcomm Qcs603 Firmware
Qualcomm Qcs603
and 50 more
u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snapdragon Mobile in QSM8350, SC7180, SDX55, SDX55M, SM6150, SM6250, SM6250P, SM7125...
Google Android
Qualcomm Qsm8350 Firmware
Qualcomm Qsm8350
Google Android
Google Android
Qualcomm Sdx55 Firmware
and 33 more
u'Due to an incorrect SMMU configuration, the modem crypto engine can potentially compromise the hypervisor' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, S...
Google Android
Qualcomm Agatti Firmware
Qualcomm Agatti
Google Android
Google Android
Google Android
and 53 more
u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon ...
Google Android
Qualcomm Agatti Firmware
Qualcomm Agatti
Qualcomm Apq8053 Firmware
Qualcomm Apq8053
Google Android
and 61 more
u'Potential buffer overflow when accessing npu debugfs node "off"/"log" with large buffer size' in Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9607...
Google Android
Qualcomm Mdm9607
Qualcomm Qcs405 Firmware
Qualcomm Qcs405
Qualcomm Sc8180x Firmware
Qualcomm Sc8180x
and 8 more
u'Possible use-after-free while accessing diag client map table since list can be reallocated due to exceeding max client limit.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapd...
Google Android
Google Android
Qualcomm Mdm9607
Google Android
Qualcomm Nicobar
Qualcomm Qcs404 Firmware
and 29 more
u'Stack out of bound issue occurs when making query to DSP capabilities due to wrong assumption was made on determining the buffer size for the DSP attributes' in Snapdragon Auto, Snapdragon Compute, ...
Google Android
Google Android
Google Android
Google Android
Google Android
Qualcomm Rennell Firmware
and 15 more
u'Specifically timed and handcrafted traffic can cause internal errors in a WLAN device that lead to improper layer 2 Wi-Fi encryption with a consequent possibility of information disclosure over the ...
ubuntu/linux<4.4.0-223.256
ubuntu/linux<5.11.0-38.42
ubuntu/linux<5.12~
ubuntu/linux<4.15.0-161.169
ubuntu/linux<5.4.0-89.100
ubuntu/linux-hwe<4.15.0-161.169~16.04.1
and 175 more
Out of bound access can happen in MHI command process due to lack of check of command channel id value received from MHI devices in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdr...
Google Android
Google Android
Qualcomm Apq8009
Google Android
Google Android
Google Android
and 51 more
u'Possible integer overflow in API due to lack of check on large oid range count in cert extension field' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sn...
Google Android
Google Android
Google Android
Google Android
Google Android
Google Android
and 53 more
u'While processing SMCInvoke asynchronous message header, message count is modified leading to a TOCTOU race condition and lead to memory corruption' in Snapdragon Auto, Snapdragon Compute, Snapdragon...
Google Android
Google Android
Qualcomm Ipq6018
Google Android
Google Android
Google Android
and 45 more
u'Resizing the usage table header before passing all the checks leads to the function exiting with a usage table in invalid state when a HLOS adversary calls the function with wrong input' in Snapdrag...
Google Android
Google Android
Google Android
Google Android
Google Android
Qualcomm Qcs404 Firmware
and 19 more
Memory failure in content protection module due to not having pointer within the scope in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking in Kamo...
Google Android
Google Android
Google Android
Qualcomm Qcs404 Firmware
Google Android
Qualcomm Rennell Firmware
and 13 more
Memory corruption can occurs in trusted application if offset size from HLOS is more than actual mapped buffer size in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Wired Infrastr...
Google Android
Google Android
Google Android
Qualcomm Qcs404 Firmware
Google Android
Qualcomm Rennell Firmware
and 13 more
Out of bound read in Fingerprint application due to requested data is being used without length check in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdrag...
Google Android
Google Android
Google Android
Google Android
Google Android
Google Android
and 54 more
Use after free issue in camera applications when used randomly over multiple operations due to pointer not set to NULL after free/destroy of the object in Snapdragon Consumer IOT, Snapdragon Mobile in...
Google Android
Google Android
Google Android
Qualcomm Qcs605 Firmware
Google Android
Qualcomm Rennell Firmware
and 21 more
Integer overflow in calculating estimated output buffer size when getting a list of installed Feature IDs, Serial Numbers or checking Feature ID status in Snapdragon Auto, Snapdragon Compute, Snapdrag...
Google Android
Google Android
Google Android
Google Android
Google Android
Google Android
and 23 more
Use after free issue when MAP and UNMAP calls at same time as data structure used my MAP may be freed by UNMAP function in Snapdragon Auto, Snapdragon Compute, Snapdragon Industrial IOT, Snapdragon Mo...
Google Android
Qualcomm Nicobar
Qualcomm Qcs405 Firmware
Qualcomm Qcs405
Qualcomm Rennell Firmware
Google Android
and 16 more
Out of bound write can occur in radio measurement request if STA receives multiple invalid rrm measurement request from AP in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon I...
Google Android
Qualcomm Apq8053 Firmware
Qualcomm Apq8053
Google Android
Google Android
Google Android
and 37 more
Possible out of bound access in WLAN handler when the received value of length in rx path is shorter than the expected value of country IE in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon In...
Google Android
Qualcomm Ipq8074 Firmware
Qualcomm Ipq8074
Qualcomm Qca8081 Firmware
Google Android
Qualcomm Qcs605 Firmware
and 19 more
The secret key used to make the Initial Sequence Number in the TCP SYN packet could be brute forced and therefore can be predicted in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snap...
Google Android
Qualcomm Msm8905 Firmware
Qualcomm Msm8905
Google Android
Qualcomm Msm8909
Qualcomm Msm8917 Firmware
and 35 more
Possible integer overflow while checking the length of frame which is a 32 bit integer and is added to another 32 bit integer which can lead to unexpected result during the check in Snapdragon Auto, S...
Google Android
Google Android
Qualcomm Apq8098
Google Android
Qualcomm Mdm9607
Google Android
and 31 more
Stack buffer overflow due to instance id is misplaced inside definition of hardware accelerated effects in makefile in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Mobile i...
Google Android
Qualcomm Apq8053 Firmware
Qualcomm Apq8053
Google Android
Qualcomm Apq8098
Google Android
and 31 more
Out of bound access in msm routing due to lack of check of size before accessing in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdrag...
Google Android
Google Android
Qualcomm Apq8009
Qualcomm Apq8053 Firmware
Qualcomm Apq8053
Google Android
and 37 more
Possibility of heap-buffer-overflow during last iteration of loop while populating image version information in diag command response packet, in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon In...
Google Android
Qualcomm Apq8053 Firmware
Qualcomm Apq8053
Google Android
Google Android
Google Android
and 51 more
Buffer overflow due to lack of upper bound check on channel length which is used for a loop. in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Co...
Google Android
Google Android
Qualcomm Apq8098
Google Android
Qualcomm Ipq6018
Qualcomm Ipq8074 Firmware
and 45 more
Use after free issue occurs when camera access sensors data through direct report mode in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Sn...
Google Android
Google Android
Google Android
Google Android
Qualcomm Mdm9607
Qualcomm Msm8909w Firmware
and 27 more
Possible buffer overflow when byte array receives incorrect input from reading source as array is not null terminated in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile in Nicoba...
Google Android
Google Android
Qualcomm Nicobar
Qualcomm Sdm670 Firmware
Qualcomm Sdm670
Qualcomm Sdm710 Firmware
and 11 more
NULL is assigned to local instance of audio device pointer after free instead of global static pointer and can lead to use after free issue in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Indu...
Google Android
Google Android
Qualcomm Apq8009
Qualcomm Apq8053 Firmware
Qualcomm Apq8053
Qualcomm Mdm9206 Firmware
and 51 more
The device may enter into error state when some tool or application gets failure at 1st buffer map all and performs 2nd buffer map which happens to be at same physical address in Snapdragon Auto, Snap...
Google Android
Google Android
Qualcomm Mdm9607
Google Android
Qualcomm Nicobar
Qualcomm Rennell Firmware
and 17 more
When a fake broadcast/multicast 11w rmf without mmie received, since no proper length check in wma_process_bip, buffer overflow will happen in both cds_is_mmie_valid and qdf_nbuf_trim_tail in Snapdrag...
Google Android
Google Android
Qualcomm Apq8009
Google Android
Qualcomm Apq8017
Qualcomm Apq8053 Firmware
and 53 more
Improper validation of event buffer extracted from FW response can lead to integer overflow, which will allow to pass the length check and eventually will lead to buffer overwrite when event data is c...
Google Android
Google Android
Qualcomm Mdm9607
Google Android
Qualcomm Nicobar
Google Android
and 25 more
Use after free issue occurs when command destructors access dynamically allocated response buffer which is already deallocated during previous command teardwon sequence in Snapdragon Auto, Snapdragon ...
Google Android
Google Android
Qualcomm Apq8098
Qualcomm Msm8909w Firmware
Qualcomm Msm8909w
Google Android
and 27 more
Null pointer dereference issue in kernel due to missing check related to LLC support in GPU in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Mobile...
Google Android
Qualcomm Qcs605 Firmware
Google Android
Qualcomm Sdm670 Firmware
Qualcomm Sdm670
Qualcomm Sdm710 Firmware
and 7 more

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2024 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203