Loading HuntDB...

Version MDM9206

OTHER 30 CVEs

Known Vulnerabilities

CVE-2018-5852

An unsigned integer underflow vulnerability in IPA driver result into a buffer over-read while reading NAT entry using debugfs command 'cat /sys/kernel/debug/ipa/ip4_nat'

HIGH CVSS 8.4 Published Nov 26, 2024

CVE-2018-11952

An image with a version lower than the fuse version may potentially be booted lead to improper authentication.

HIGH CVSS 7.8 Published Nov 26, 2024

CVE-2018-11922

Wrong configuration in Touch Pal application can collect user behavior data without awareness by the user.

HIGH CVSS 7.5 Published Nov 26, 2024

CVE-2017-15832

Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW

HIGH CVSS 7.8 Published Nov 26, 2024

CVE-2016-10394

Initial xbl_sec revision does not have all the debug policy features and critical checks.

CRITICAL CVSS 9.8 Published Nov 26, 2024

CVE-2017-9711

Certain unprivileged processes are able to perform IOCTL calls.

MEDIUM CVSS 6.7 Published Nov 22, 2024

CVE-2023-21626

Cryptographic issue in HLOS due to improper authentication while performing key velocity checks using more than one key.

HIGH CVSS 7.1 Published Aug 08, 2023

CVE-2022-40510

Memory corruption due to buffer copy without checking size of input in Audio while voice call with EVS vocoder.

CRITICAL CVSS 9.8 Published Aug 08, 2023

CVE-2022-40531

Memory corruption in WLAN due to incorrect type cast while sending WMI_SCAN_SCH_PRIO_TBL_CMDID message.

HIGH CVSS 8.4 Published Mar 07, 2023

CVE-2022-40515

Memory corruption in Video due to double free while playing 3gp clip with invalid metadata atoms.

HIGH CVSS 7.3 Published Mar 07, 2023

CVE-2022-33213

Memory corruption in modem due to buffer overflow while processing a PPP packet

HIGH CVSS 7.5 Published Mar 07, 2023

CVE-2022-25705

Memory corruption in modem due to integer overflow to buffer overflow while handling APDU response

HIGH CVSS 7.8 Published Mar 07, 2023

CVE-2022-25694

Memory corruption in Modem due to usage of Out-of-range pointer offset in UIM

HIGH CVSS 8.4 Published Mar 07, 2023

CVE-2022-25655

Memory corruption in WLAN HAL while arbitrary value is passed in WMI UTF command payload.

HIGH CVSS 8.4 Published Mar 07, 2023

CVE-2022-22075

Information Disclosure in Graphics during GPU context switch.

MEDIUM CVSS 6.2 Published Mar 07, 2023

CVE-2022-40512

Transient DOS in WLAN Firmware due to buffer over-read while processing probe response or beacon.

HIGH CVSS 7.5 Published Feb 09, 2023

CVE-2022-33233

Memory corruption due to configuration weakness in modem wile sending command to write protected files.

HIGH CVSS 7.8 Published Feb 09, 2023

CVE-2022-33229

Information disclosure due to buffer over-read in Modem while using static array to process IPv4 packets.

HIGH CVSS 8.2 Published Feb 09, 2023

CVE-2022-25738

Information disclosure in modem due to buffer over-red while performing checksum of packet received

HIGH CVSS 8.2 Published Feb 09, 2023

CVE-2022-25735

Denial of service in modem due to missing null check while processing TCP or UDP packets from server

HIGH CVSS 7.5 Published Feb 09, 2023

CVE-2022-25734

Denial of service in modem due to missing null check while processing IP packets with padding

HIGH CVSS 7.5 Published Feb 09, 2023

CVE-2022-25733

Denial of service in modem due to null pointer dereference while processing DNS packets

HIGH CVSS 7.5 Published Feb 09, 2023

CVE-2022-25732

Information disclosure in modem due to buffer over read in dns client due to missing length check

HIGH CVSS 8.2 Published Feb 09, 2023

CVE-2022-25729

Memory corruption in modem due to improper length check while copying into memory

CRITICAL CVSS 9.8 Published Feb 09, 2023

CVE-2022-25728

Information disclosure in modem due to buffer over-read while processing response from DNS server

HIGH CVSS 8.2 Published Feb 09, 2023

CVE-2022-33299

Transient DOS due to null pointer dereference in Bluetooth HOST while receiving an attribute protocol PDU with zero length data.

HIGH CVSS 7.5 Published Jan 06, 2023

CVE-2022-33290

Transient DOS in Bluetooth HOST due to null pointer dereference when a mismatched argument is passed.

HIGH CVSS 7.5 Published Jan 06, 2023

CVE-2022-33286

Transient DOS due to buffer over-read in WLAN while processing 802.11 management frames.

HIGH CVSS 7.5 Published Jan 06, 2023

CVE-2022-33285

Transient DOS due to buffer over-read in WLAN while parsing WLAN CSA action frames.

HIGH CVSS 7.5 Published Jan 06, 2023

CVE-2022-33266

Memory corruption in Audio due to integer overflow to buffer overflow while music playback of clips like amr,evrc,qcelp with modified content.

MEDIUM CVSS 5.9 Published Jan 06, 2023