U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Results Type: Overview
  • Keyword (text search): cpe:2.3:o:qualcomm:sm7250p_firmware:-:*:*:*:*:*:*:*
  • CPE Name Search: true
There are 447 matching records.
Displaying matches 101 through 120.
Vuln ID Summary CVSS Severity
CVE-2023-21657

Memoru corruption in Audio when ADSP sends input during record use case.

Published: June 06, 2023; 4:15:12 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-21628

Memory corruption in WLAN HAL while processing WMI-UTF command or FTM TLV1 command.

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2022-40536

Transient DOS due to improper authentication in modem while receiving plain TLB OTA request message from network.

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2022-40533

Transient DOS due to untrusted Pointer Dereference in core while sending USB QMI request.

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2022-40529

Memory corruption due to improper access control in kernel while processing a mapping request from root process.

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2022-40523

Information disclosure in Kernel due to indirect branch misprediction.

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2022-40522

Memory corruption in Linux Networking due to double free while handling a hyp-assign.

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2022-40521

Transient DOS due to improper authorization in Modem

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2022-40507

Memory corruption due to double free in Core while mapping HLOS address to the list.

Published: June 06, 2023; 4:15:11 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2022-33307

Memory Corruption due to double free in automotive when a bad HLOS address for one of the lists to be mapped is passed.

Published: June 06, 2023; 4:15:10 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2022-33264

Memory corruption in modem due to stack based buffer overflow while parsing OTASP Key Generation Request Message.

Published: June 06, 2023; 4:15:10 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2022-33251

Transient DOS due to reachable assertion in Modem because of invalid network configuration.

Published: June 06, 2023; 4:15:10 AM -0400
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2022-22076

information disclosure due to cryptographic issue in Core during RPMB read request.

Published: June 06, 2023; 4:15:09 AM -0400
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2022-22060

Assertion occurs while processing Reconfiguration message due to improper validation

Published: June 06, 2023; 4:15:09 AM -0400
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2022-40504

Transient DOS due to reachable assertion in Modem when UE received Downlink Data Indication message from the network.

Published: May 02, 2023; 4:15:09 AM -0400
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2022-33273

Information disclosure due to buffer over-read in Trusted Execution Environment while QRKS report generation.

Published: May 02, 2023; 4:15:08 AM -0400
V3.1: 5.5 MEDIUM
V2.0:(not available)
CVE-2023-21666

Memory Corruption in Graphics while accessing a buffer allocated through the graphics pool.

Published: May 02, 2023; 2:15:10 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2023-21665

Memory corruption in Graphics while importing a file.

Published: May 02, 2023; 2:15:10 AM -0400
V3.1: 7.8 HIGH
V2.0:(not available)
CVE-2022-40508

Transient DOS due to reachable assertion in Modem while processing config related to cross carrier scheduling, which is not supported.

Published: May 02, 2023; 2:15:10 AM -0400
V3.1: 7.5 HIGH
V2.0:(not available)
CVE-2022-34144

Transient DOS due to reachable assertion in Modem during OSI decode scheduling.

Published: May 02, 2023; 2:15:10 AM -0400
V3.1: 7.5 HIGH
V2.0:(not available)