U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Results Type: Overview
  • Keyword (text search): cpe:2.3:o:qualcomm:qcs8155_firmware:-:*:*:*:*:*:*:*
  • CPE Name Search: true
There are 71 matching records.
Displaying matches 1 through 20.
Vuln ID Summary CVSS Severity
CVE-2024-49844

Memory corruption while triggering commands in the PlayReady Trusted application.

Published: May 06, 2025; 5:15:22 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2025-21424

Memory corruption while calling the NPU driver APIs concurrently.

Published: March 03, 2025; 6:15:15 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-33056

Memory corruption when allocating and accessing an entry in an SMEM partition continuously.

Published: December 02, 2024; 6:15:08 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-33044

Memory corruption while Configuring the SMR/S2CR register in Bypass mode.

Published: December 02, 2024; 6:15:08 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-38423

Memory corruption while processing GPU page table switch.

Published: November 04, 2024; 5:15:09 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-21469

Memory corruption when an invoke call and a TEE call are bound for the same trusted application.

Published: July 01, 2024; 11:15:15 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-21465

Memory corruption while processing key blob passed by the user.

Published: July 01, 2024; 11:15:14 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-21462

Transient DOS while loading the TA ELF file.

Published: July 01, 2024; 11:15:14 AM -0400
V4.0:(not available)
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2024-21461

Memory corruption while performing finish HMAC operation when context is freed by keymaster.

Published: July 01, 2024; 11:15:14 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-43542

Memory corruption while copying a keyblob`s material when the key material`s size is not accurately checked.

Published: June 03, 2024; 6:15:10 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-21475

Memory corruption when the payload received from firmware is not as per the expected protocol size.

Published: May 06, 2024; 11:15:21 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2024-21468

Memory corruption when there is failed unmap operation in GPU.

Published: April 01, 2024; 11:15:49 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-28547

Memory corruption in SPS Application while requesting for public key in sorter TA.

Published: April 01, 2024; 11:15:46 AM -0400
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-43513

Memory corruption while processing the event ring, the context read pointer is untrusted to HLOS and when it is passed with arbitrary values, may point to address in the middle of ring element.

Published: February 06, 2024; 1:16:01 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33077

Memory corruption in HLOS while converting from authorization token to HIDL vector.

Published: February 06, 2024; 1:16:00 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33032

Memory corruption in TZ Secure OS while requesting a memory allocation from TA region.

Published: January 02, 2024; 1:15:09 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33030

Memory corruption in HLOS while running playready use-case.

Published: January 02, 2024; 1:15:09 AM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33107

Memory corruption in Graphics Linux while assigning shared virtual memory region during IOCTL call.

Published: December 04, 2023; 10:15:14 PM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-33070

Transient DOS in Automotive OS due to improper authentication to the secure IO calls.

Published: December 04, 2023; 10:15:12 PM -0500
V4.0:(not available)
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-33063

Memory corruption in DSP Services during a remote call from HLOS to DSP.

Published: December 04, 2023; 10:15:12 PM -0500
V4.0:(not available)
V3.1: 7.8 HIGH
V2.0:(not available)