U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Results Type: Overview
  • Keyword (text search): cpe:2.3:o:qualcomm:mdm9628_firmware:-:*:*:*:*:*:*:*
  • CPE Name Search: true
There are 197 matching records.
Displaying matches 1 through 20.
Vuln ID Summary CVSS Severity
CVE-2023-43513

Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

Published: February 06, 2024; 1:16:01 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33069

Memory corruption in Audio while processing the calibration data returned from ACDB loader.

Published: February 06, 2024; 1:16:00 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33068

Memory corruption in Audio while processing IIR config data from AFE calibration block.

Published: February 06, 2024; 1:16:00 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33067

Memory corruption in Audio while calling START command on host voice PCM multiple times for the same RX or TX tap points.

Published: February 06, 2024; 1:16:00 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33064

Transient DOS in Audio when invoking callback function of ASM driver.

Published: February 06, 2024; 1:15:59 AM -0500
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-43511

Transient DOS while parsing IPv6 extension header when WLAN firmware receives an IPv6 packet that contains `IPPROTO_NONE` as the next header.

Published: January 02, 2024; 1:15:13 AM -0500
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2023-33120

Memory corruption in Audio when memory map command is executed consecutively in ADSP.

Published: January 02, 2024; 1:15:12 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33033

Memory corruption in Audio during playback with speaker protection.

Published: January 02, 2024; 1:15:09 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33030

Memory corruption in HLOS while running playready use-case.

Published: January 02, 2024; 1:15:09 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33080

Transient DOS while parsing a vender specific IE (Information Element) of reassociation response management frame.

Published: December 04, 2023; 10:15:12 PM -0500
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2023-33018

Memory corruption while using the UIM diag command to get the operators name.

Published: December 04, 2023; 10:15:10 PM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33017

Memory corruption in Boot while running a ListVars test in UEFI Menu during boot.

Published: December 04, 2023; 10:15:10 PM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-28586

Information disclosure when the trusted application metadata symbol addresses are accessed while loading an ELF in TEE.

Published: December 04, 2023; 10:15:09 PM -0500
V3.1: 6.5 MEDIUM
V2.0:(not available)
CVE-2023-28551

Memory corruption in UTILS when modem processes memory specific Diag commands having arbitrary address values as input arguments.

Published: December 04, 2023; 10:15:09 PM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-28550

Memory corruption in MPP performance while accessing DSM watermark using external memory address.

Published: December 04, 2023; 10:15:08 PM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33059

Memory corruption in Audio while processing the VOC packet data from ADSP.

Published: November 07, 2023; 1:15:11 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33031

Memory corruption in Automotive Audio while copying data from ADSP shared buffer to the VOC packet data buffer.

Published: November 07, 2023; 1:15:10 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-28572

Memory corruption in WLAN HOST while processing the WLAN scan descriptor list.

Published: November 07, 2023; 1:15:10 AM -0500
V3.1: 8.8 HIGH
V2.0:(not available)
CVE-2023-28570

Memory corruption while processing audio effects.

Published: November 07, 2023; 1:15:10 AM -0500
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-22388

Memory Corruption in Multi-mode Call Processor while processing bit mask API.

Published: November 07, 2023; 1:15:08 AM -0500
V3.1: 9.8 CRITICAL
V2.0:(not available)